[Wolves] Fwd: [LUG] OpenSSL 1.0.1 "Heartbleed" vulnerability

Andy Wootton andy.wootton at gmail.com
Tue Apr 8 18:38:53 UTC 2014


I heard about this last night (via a Twitter doge joke) but SSL was upgraded when I logged into Ubuntu this morning. There was some advice about changing your VPN keys somewhere, if you're very concerned about security.

"so compromise"

Woo

On 08/04/14 18:13, Mark Croft wrote:
> just reading this from devon linux user group , sounds serious ,
> bugs/flaw/hole in cryptographic software library
>
> "Researchers have discovered an extremely critical defect in the
> cryptographic software library an estimated two-thirds of Web servers
> use to identify themselves to end users and prevent the eavesdropping
> of passwords, banking credentials, and other sensitive data."
>
>
> ---------- Forwarded message ----------
> From: Martijn Grooten <martijn at lapsedordinary.net>
> Date: 8 April 2014 09:10
> Subject: [LUG] OpenSSL 1.0.1 "Heartbleed" vulnerability
> To: list at dcglug.org.uk
>
>
> Things rarely get more serious than this:
>
> http://arstechnica.com/security/2014/04/critical-crypto-bug-in-openssl-opens-two-thirds-of-the-web-to-eavesdropping/
> http://heartbleed.com/
>
> Martijn.
>
>
> --
> The Mailing List for the Devon & Cornwall LUG
> http://mailman.dclug.org.uk/listinfo/list
> FAQ: http://www.dcglug.org.uk/listfaq
>
> _______________________________________________
> Wolves LUG mailing list
> Homepage: http://www.wolveslug.org.uk/
> Mailing list: Wolves at mailman.lug.org.uk
> Mailing list home: https://mailman.lug.org.uk/mailman/listinfo/wolves




More information about the Wolves mailing list