4 ms·
An Ubuntu update would be nice right about now. Outside of disabling everything that uses openssl or compiling a new one manually, there's not much I can do to
by michh 13y ago
An Ubuntu update would be nice right about now. Outside of disabling everything that uses openssl or compiling a new one manually, there's not much I can do to secure my servers at this moment. Meanwhile, I'm guessing a lot of not so nice people are racing to scan IP ranges for this bug.
- mey 13y agoLooks like this being made publicly listed, they did get this CVE out now (I last checked that link around noon PST) http://people.canonical.com/~ubuntu-security/cve/2014/CVE-2014-0160.html http://people.canonical.com/~ubuntu-security/cve/2014/CVE-20...
- ars 13y agoDebian already updated: http://www.debian.org/security/2014/dsa-2896 http://www.debian.org/security/2014/dsa-2896 Ubuntu should follow really soon, if not already. Edit: Ubuntu updated: http://www.ubuntu.com/usn/usn-2165-1/ http://www.ubuntu.com/usn/usn-2165-1/
- atmosx 13y agoFreeBSD updated (run the update about 40 minutes ago).