[Pkg-openssl-devel] Bug#728055: openssl: CVE-2012-4929

Michael Gilbert mgilbert at debian.org
Sun Oct 27 22:25:49 UTC 2013


package: openssl
severity: important
version: 0.9.8o-1
tag: security

Hi,

This is the CVE for the CRIME issue.  Redhat and Ubuntu have corrected
this in openssl by disabling zlib compression by default.  Please see:
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-4929

Best wishes,
Mike



More information about the Pkg-openssl-devel mailing list