X-Hosted
Verified User
At the moment many webservers are in danger, a bug had been discovered in OpenSSL that makes it possible to exploit some certificate and login as root without a password !!
References:
http://cve.mitre.org/cgi-bin/cvename...=CVE-2006-4339
http://www.openssl.org/news/secadv_20060905.txt
All versions before 0.9.7j en 0.9.8b are affected.
How to check version:
# openssl version
How to upate:
Any 1? Weal?
Thanks to 'Frans van Nispen', Original poster (in dutch) on webhostingtalk.nl (http://www.webhostingtalk.nl/directadmin/102938-groot-security-risico-openssl.html)
References:
http://cve.mitre.org/cgi-bin/cvename...=CVE-2006-4339
http://www.openssl.org/news/secadv_20060905.txt
All versions before 0.9.7j en 0.9.8b are affected.
How to check version:
# openssl version
How to upate:
Any 1? Weal?
Thanks to 'Frans van Nispen', Original poster (in dutch) on webhostingtalk.nl (http://www.webhostingtalk.nl/directadmin/102938-groot-security-risico-openssl.html)
Last edited: