[issue823] openssl buffer overflow.

Matthew Dillon dillon at apollo.backplane.com
Thu Oct 4 12:42:03 PDT 2007


:Simon 'corecode' Schubert <corecode at fs.ei.tum.de> added the comment:
:
:We have 0.9.8e in the tree.  As far as I can tell, this should not be
:affected -- at least from looking at the CVE summaries.  They all only
:talk about <=3D 0.9.8d.  Unfortunately openssl.org doesn't really publish
:security issues (in a prominent place).
:
:cheers
:  simon

    Ok, I'd appreciate it if someone could check that patch I posted against
    what we have in the tree to determine whether our version is ok or not.

    Yah, yah, I could do it myself, but I'm trying to push for wider
    participation here :-)

						-Matt





More information about the Bugs mailing list