package: openssl severity: important version: 0.9.8o-1 tag: security Hi, This is the CVE for the CRIME issue. Redhat and Ubuntu have corrected this in openssl by disabling zlib compression by default. Please see: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-4929 Best wishes, Mike