Files
package-update/security/openssl
Aldas Nabazas 77aa0935f4 openssl: Updated (0.9.8g -> 0.9.8h) : SECURITY - MEDIUM
CVE-2008-1678 (Medium) :
Memory leak in the zlib_stateful_init function in crypto/comp/c_zlib.c in libssl in OpenSSL 0.9.8f
through 0.9.8h allows remote attackers to cause a denial of service (memory consumption) via
multiple calls, as demonstrated by initial SSL client handshakes to the Apache HTTP Server
mod_ssl that specify a compression algorithm.
2008-08-07 20:25:20 +02:00
..