|
From: freshmeat.net <no...@fr...> - 2010-11-17 14:51:21
|
Dear freshmeat.net subscriber, barsnick just announced version 1.0.0b of OpenSSL on freshmeat.net. The changes are as follows: A race condition was fixed in the TLS server extension code parsing, which could lead to arbitrary code execution. This vulnerability, reported as CVE-2010-3864, affected multi-threaded servers using OpenSSL's internal caching mechanism. Project description: The OpenSSL Project is a collaborative effort to develop a robust, commercial-grade, fully featured, and Open Source toolkit implementing the Secure Sockets Layer (SSL v2/v3) and Transport Layer Security (TLS v1) as well as a full-strength general-purpose cryptography library. Detailed history and release notes are available here: http://freshmeat.net/projects/openssl#release_324619 If you want to change your subscription to this project, please log in to: http://freshmeat.net/account/subscriptions Best regards, freshmeat.net -- This email was sent to dev...@li.... |