Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Debian squeeze (oldstable) is not vulnerable, because it's still running 0.9.8o-4squeeze14.

0.9.8o was released 2010-06-01, almost 4 years ago!



http://patch-tracker.debian.org/package/openssl/0.9.8o-4sque...

It's had a lot of security fixes backported to it in the four years since the upstream release.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: