[UCI-Linux] OpenSSL vulnerability

Mike Iglesias iglesias at uci.edu
Thu Jun 5 10:30:35 PDT 2014


A new vulnerability has been discovered and fixed in OpenSSL that could allow
a "man-in-the-middle" attack to succeed if both sides are running vulnerable
versions of OpenSSL.  This particular bug affects all versions of OpenSSL, so
please update your systems when the update becomes available.

The updated release of OpenSSL also fixes some other vulnerabilities in the
code, but none of those are as serious as the possible MITM attack.


-- 
Mike Iglesias                          Email:       iglesias at uci.edu
University of California, Irvine       phone:       949-824-6926
Office of Information Technology       FAX:         949-824-2270


More information about the UCI-Linux mailing list