CVE-2014- and OpenSSL?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Ask Symantec why they labeled it as an openssl CVE; it is not.  Read AGL?s blog post[1].  Two specific implementations are identified and a different crypto library (NSS) is implicated.

This is about as formal a statement as you?re going to get. ?

[1] https://www.imperialviolet.org/2014/12/08/poodleagain.html

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mta.opensslfoundation.net/pipermail/openssl-users/attachments/20141209/34507d98/attachment-0001.html>


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux