OpenSSL Insecure Protocol Negotiation Weakness
BID:15071
Info
OpenSSL Insecure Protocol Negotiation Weakness
| Bugtraq ID: | 15071 |
| Class: | Design Error |
| CVE: |
CVE-2005-2969 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 11 2005 12:00AM |
| Updated: | Aug 25 2008 11:15PM |
| Credit: | Yutaka Oiwa of the Research Center for Information Security, National Institute of Advanced Industrial Science and Technology (AIST), Japan, reported this issue to the vendor. |
| Vulnerable: |
Ubuntu Ubuntu Linux 5.10 powerpc Ubuntu Ubuntu Linux 5.10 i386 Ubuntu Ubuntu Linux 5.10 amd64 Ubuntu Ubuntu Linux 5.0 4 powerpc Ubuntu Ubuntu Linux 5.0 4 i386 Ubuntu Ubuntu Linux 5.0 4 amd64 Ubuntu Ubuntu Linux 4.1 ppc Ubuntu Ubuntu Linux 4.1 ia64 Ubuntu Ubuntu Linux 4.1 ia32 Turbolinux Turbolinux Server 10.0 Turbolinux Turbolinux Server 10.0.0 x64 TurboLinux Personal TurboLinux Multimedia Turbolinux FUJI 0 Turbolinux Appliance Server Workgroup Edition 1.0 Turbolinux Appliance Server Hosting Edition 1.0 Turbolinux Appliance Server 1.0 Workgroup Edition Turbolinux Appliance Server 1.0 Hosting Edition Turbolinux Appliance Server 2.0 Trustix Secure Linux 3.0 Trustix Secure Linux 2.2 Trustix Secure Enterprise Linux 2.0 TransSoft Broker FTP Server 8.0 SuSE SUSE Linux Enterprise Server 8 SuSE Linux Enterprise Server 9 SuSE Linux Desktop 1.0 Sun Solaris 10.0_x86 Sun Solaris 10 SmoothWall Express 2.0 Slackware Linux 10.2 Slackware Linux 10.1 Slackware Linux 10.0 Slackware Linux 9.1 Slackware Linux 9.0 Slackware Linux 8.1 Slackware Linux -current SGI Advanced Linux Environment 3.0 SCO Unixware 7.1.4 SCO Unixware 7.1.3 up SCO Unixware 7.1.3 S.u.S.E. UnitedLinux 1.0 S.u.S.E. Open-Enterprise-Server 9.0 S.u.S.E. Novell Linux Desktop 9.0 S.u.S.E. Linux Professional 10.0 OSS S.u.S.E. Linux Professional 10.0 S.u.S.E. Linux Professional 9.3 x86_64 S.u.S.E. Linux Professional 9.3 S.u.S.E. Linux Professional 9.2 x86_64 S.u.S.E. Linux Professional 9.2 S.u.S.E. Linux Professional 9.1 x86_64 S.u.S.E. Linux Professional 9.1 S.u.S.E. Linux Professional 9.0 x86_64 S.u.S.E. Linux Professional 9.0 S.u.S.E. Linux Personal 10.0 OSS S.u.S.E. Linux Personal 9.3 x86_64 S.u.S.E. Linux Personal 9.3 S.u.S.E. Linux Personal 9.2 x86_64 S.u.S.E. Linux Personal 9.2 S.u.S.E. Linux Personal 9.1 x86_64 S.u.S.E. Linux Personal 9.1 S.u.S.E. Linux Personal 9.0 x86_64 S.u.S.E. Linux Personal 9.0 rPath rPath Linux 1 Redhat Red Hat Network Satellite Server 5.0 Redhat Red Hat Network Satellite Server 4.2 Redhat Network Satellite (for RHEL 4) 5.1 Redhat Linux 9.0 i386 Redhat Fedora Core4 Redhat Fedora Core3 Redhat Fedora Core2 Redhat Fedora Core1 Redhat Enterprise Linux WS 4 Redhat Enterprise Linux WS 3 Redhat Enterprise Linux WS 2.1 IA64 Redhat Enterprise Linux WS 2.1 Redhat Enterprise Linux ES 4 Redhat Enterprise Linux ES 3 Redhat Enterprise Linux ES 2.1 IA64 Redhat Enterprise Linux ES 2.1 Redhat Enterprise Linux AS 4 Redhat Enterprise Linux AS 3 Redhat Enterprise Linux AS 2.1 IA64 Redhat Enterprise Linux AS 2.1 Redhat Desktop 4.0 Redhat Desktop 3.0 Redhat Advanced Workstation for the Itanium Processor 2.1 IA64 Redhat Advanced Workstation for the Itanium Processor 2.1 OpenSSL Project OpenSSL 0.9.8 OpenSSL Project OpenSSL 0.9.7 g OpenSSL Project OpenSSL 0.9.7 f OpenSSL Project OpenSSL 0.9.7 e OpenSSL Project OpenSSL 0.9.7 d OpenSSL Project OpenSSL 0.9.7 c OpenSSL Project OpenSSL 0.9.7 beta3 OpenSSL Project OpenSSL 0.9.7 beta2 OpenSSL Project OpenSSL 0.9.7 beta1 OpenSSL Project OpenSSL 0.9.7 b OpenSSL Project OpenSSL 0.9.7 a OpenSSL Project OpenSSL 0.9.7 OpenSSL Project OpenSSL 0.9.6 m OpenSSL Project OpenSSL 0.9.6 l OpenSSL Project OpenSSL 0.9.6 k OpenSSL Project OpenSSL 0.9.6 j OpenSSL Project OpenSSL 0.9.6 i OpenSSL Project OpenSSL 0.9.6 h OpenSSL Project OpenSSL 0.9.6 g OpenSSL Project OpenSSL 0.9.6 f OpenSSL Project OpenSSL 0.9.6 e OpenSSL Project OpenSSL 0.9.6 d OpenSSL Project OpenSSL 0.9.6 c OpenSSL Project OpenSSL 0.9.6 b OpenSSL Project OpenSSL 0.9.6 a OpenSSL Project OpenSSL 0.9.6 OpenSSL Project OpenSSL 0.9.5 a OpenSSL Project OpenSSL 0.9.5 OpenSSL Project OpenSSL 0.9.4 OpenSSL Project OpenSSL 0.9.3 OpenSSL Project OpenSSL 0.9.2 b OpenSSL Project OpenSSL 0.9.1 c NetBSD NetBSD 2.0.2 NetBSD NetBSD 2.0.1 NetBSD NetBSD 2.0 Mandriva Linux Mandrake 2006.0 x86_64 Mandriva Linux Mandrake 2006.0 Mandriva Linux Mandrake 10.2 x86_64 Mandriva Linux Mandrake 10.2 Mandriva Linux Mandrake 10.1 x86_64 Mandriva Linux Mandrake 10.1 MandrakeSoft Multi Network Firewall 2.0 MandrakeSoft Corporate Server 3.0 x86_64 MandrakeSoft Corporate Server 3.0 MandrakeSoft Corporate Server 2.1 x86_64 MandrakeSoft Corporate Server 2.1 Juniper IVE OS 5.1 R3 Juniper IVE OS 5.0 R5 Juniper IVE OS 4.2 R6 Juniper IVE OS 5.0 Juniper IVE OS 4.0 Juniper IVE OS 3.0 Juniper IVE OS 2.0 Juniper IVE OS 1.0 IBM Hardware Management Console (HMC) for pSeries 5.0 R1.0 IBM Hardware Management Console (HMC) for pSeries 4.0 R5.0 IBM Hardware Management Console (HMC) for pSeries 4.0 R4.0 IBM Hardware Management Console (HMC) for pSeries 4.0 R3.3 IBM Hardware Management Console (HMC) for pSeries 4.0 R3.2 IBM Hardware Management Console (HMC) for pSeries 4.0 R3.1 IBM Hardware Management Console (HMC) for pSeries 4.0 R2.1 IBM Hardware Management Console (HMC) for pSeries 4.0 R2.0 IBM Hardware Management Console (HMC) for pSeries 3.3.2 IBM Hardware Management Console (HMC) for pSeries 3.0 R3.6 IBM Hardware Management Console (HMC) for pSeries 4 IBM Hardware Management Console (HMC) for pSeries 3 IBM Hardware Management Console (HMC) for iSeries 5.0 R1.0 IBM Hardware Management Console (HMC) for iSeries 4.0 R5.0 IBM Hardware Management Console (HMC) for iSeries 4.0 R4.0 IBM Hardware Management Console (HMC) for iSeries 4.0 R3.3 IBM Hardware Management Console (HMC) for iSeries 4.0 R3.2 IBM Hardware Management Console (HMC) for iSeries 4.0 R3.1 IBM Hardware Management Console (HMC) for iSeries 4.0 R2.1 IBM Hardware Management Console (HMC) for iSeries 4.0 R2.0 IBM Hardware Management Console (HMC) for iSeries 4.0 IBM Hardware Management Console (HMC) for iSeries 3.3.2 IBM Hardware Management Console (HMC) for iSeries 3.0 R3.6 IBM Director 5.10 HP Version Version Control Repository Agent HP Version Control Agent HP ProLiant Performance Analyzer HP Performance Management Pack 3.1 HP Intelligent Cluster Administrator HP Insight Manager (SNMP and DMI agents) 7.0 HP HTTP Server 5.96 HP HTTP Server 5.94 HP HTTP Server 5.93 HP HTTP Server 5.92 HP HTTP Server 5.0 HP HP-UX B.11.31 HP HP-UX B.11.23 HP HP-UX B.11.11 HP HP-UX B.11.00 HP Compaq Survey Utility HP Compaq Power Management HP Array Configuration Utility FreeBSD FreeBSD 6.0 -STABLE FreeBSD FreeBSD 6.0 -RELEASE FreeBSD FreeBSD 5.4 -RELENG FreeBSD FreeBSD 5.4 -RELEASE FreeBSD FreeBSD 5.3 -STABLE FreeBSD FreeBSD 5.3 -RELENG FreeBSD FreeBSD 5.3 -RELEASE FreeBSD FreeBSD 5.3 FreeBSD FreeBSD 5.2.1 -RELEASE FreeBSD FreeBSD 5.2 -RELENG FreeBSD FreeBSD 5.2 -RELEASE FreeBSD FreeBSD 5.2 FreeBSD FreeBSD 5.1 -RELENG FreeBSD FreeBSD 5.1 -RELEASE/Alpha FreeBSD FreeBSD 5.1 -RELEASE-p5 FreeBSD FreeBSD 5.1 -RELEASE FreeBSD FreeBSD 5.1 FreeBSD FreeBSD 5.0 -RELENG FreeBSD FreeBSD 5.0 FreeBSD FreeBSD 4.11 -STABLE FreeBSD FreeBSD 4.11 -RELENG FreeBSD FreeBSD 4.10 -RELENG FreeBSD FreeBSD 4.10 -RELEASE FreeBSD FreeBSD 4.10 Debian Linux 3.1 sparc Debian Linux 3.1 s/390 Debian Linux 3.1 ppc Debian Linux 3.1 mipsel Debian Linux 3.1 mips Debian Linux 3.1 m68k Debian Linux 3.1 ia-64 Debian Linux 3.1 ia-32 Debian Linux 3.1 hppa Debian Linux 3.1 arm Debian Linux 3.1 amd64 Debian Linux 3.1 alpha Debian Linux 3.1 Debian Linux 3.0 sparc Debian Linux 3.0 s/390 Debian Linux 3.0 ppc Debian Linux 3.0 mipsel Debian Linux 3.0 mips Debian Linux 3.0 m68k Debian Linux 3.0 ia-64 Debian Linux 3.0 ia-32 Debian Linux 3.0 hppa Debian Linux 3.0 arm Debian Linux 3.0 alpha Debian Linux 3.0 Cisco Works Common Services (CWCS) 3.0 Cisco Works Common Services (CWCS) 2.2 Cisco Wireless Control System Software 4.0 Cisco PIX/ASA 7.0.1 .4 Cisco PIX/ASA 7.0 Cisco Mainframe Channel Connection (CMCC) 28-22 Cisco IOS XR 3.2 Cisco IOS XR 3.1 .0 Cisco IOS XR 3.0.1 Cisco IOS XR Cisco GSS Global Site Selector 4491 1.2 Cisco GSS Global Site Selector 4490 1.2 Cisco GSS Global Site Selector 4480 1.2 Blue Coat Systems SGOS 4.1.2 .1 Blue Coat Systems SGOS 4.1.2 Blue Coat Systems SGOS 4.1.1 .1 Blue Coat Systems SGOS 4.1.1 Blue Coat Systems SGOS 3.2.6 .1 Blue Coat Systems SGOS 3.2.5 .5 Blue Coat Systems SGOS 3.2.5 Blue Coat Systems SGOS 3.2.4 .8 Blue Coat Systems SGOS 3.2.4 Blue Coat Systems SGOS 3.1.5 .2 Blue Coat Systems SGOS 2.1.11 Blue Coat Systems ProxyAV Blue Coat Systems CacheOS 4.0 Avaya Predictive Dialing System (PDS) 11.0 Avaya Predictive Dialing System (PDS) 11.11 Avaya Predictive Dialer 0 Avaya Intuity Audix R5 0 Avaya Intuity AUDIX Astaro Security Linux 6.0 02 Astaro Security Linux 6.0 01 Astaro Security Linux 4.0 28 Apple Mac OS X Server 10.4.3 Apple Mac OS X Server 10.4.2 Apple Mac OS X Server 10.4.1 Apple Mac OS X Server 10.4 Apple Mac OS X Server 10.3.9 Apple Mac OS X Server 10.3.8 Apple Mac OS X Server 10.3.7 Apple Mac OS X Server 10.3.6 Apple Mac OS X Server 10.3.5 Apple Mac OS X Server 10.3.4 Apple Mac OS X Server 10.3.3 Apple Mac OS X Server 10.3.2 Apple Mac OS X Server 10.3.1 Apple Mac OS X Server 10.3 Apple Mac OS X 10.4.3 Apple Mac OS X 10.4.2 Apple Mac OS X 10.4.1 Apple Mac OS X 10.4 Apple Mac OS X 10.3.9 Apple Mac OS X 10.3.8 Apple Mac OS X 10.3.7 Apple Mac OS X 10.3.6 Apple Mac OS X 10.3.5 Apple Mac OS X 10.3.4 Apple Mac OS X 10.3.3 Apple Mac OS X 10.3.2 Apple Mac OS X 10.3.1 Apple Mac OS X 10.3 |
| Not Vulnerable: |
OpenSSL Project OpenSSL 0.9.8 a OpenSSL Project OpenSSL 0.9.7 h Juniper IVE OS 5.1 R4 Juniper IVE OS 5.0 R6 Juniper IVE OS 4.2 R7 IBM Director 5.10.3 Cisco PIX/ASA 7.0.4 .3 Cisco PIX/ASA 7.0.4 Astaro Security Linux 6.1 01 Astaro Security Linux 4.0 29 |
Discussion
OpenSSL Insecure Protocol Negotiation Weakness
OpenSSL is prone to a remote protocol-negotiation weakness. This issue occurs because of the implementation of the 'SSL_OP_MSIE_SSLV2_RSA_PADDING' option to maintain compatibility with third-party software.
This issue presents itself when two peers try to negotiate the protocol they wish to communicate with. Attackers who can intercept and modify the SSL communications may exploit this weakness to force SSL version 2 to be chosen.
The attacker may then exploit various insecurities in SSL version 2 to gain access to or tamper with the cleartext communications between the targeted client and server.
Note that the 'SSL_OP_MSIE_SSLV2_RSA_PADDING' option is enabled with the frequently used 'SSL_OP_ALL' option.
SSL peers that are configured to disallow SSL version 2 are not affected by this issue.
OpenSSL is prone to a remote protocol-negotiation weakness. This issue occurs because of the implementation of the 'SSL_OP_MSIE_SSLV2_RSA_PADDING' option to maintain compatibility with third-party software.
This issue presents itself when two peers try to negotiate the protocol they wish to communicate with. Attackers who can intercept and modify the SSL communications may exploit this weakness to force SSL version 2 to be chosen.
The attacker may then exploit various insecurities in SSL version 2 to gain access to or tamper with the cleartext communications between the targeted client and server.
Note that the 'SSL_OP_MSIE_SSLV2_RSA_PADDING' option is enabled with the frequently used 'SSL_OP_ALL' option.
SSL peers that are configured to disallow SSL version 2 are not affected by this issue.
Exploit / POC
OpenSSL Insecure Protocol Negotiation Weakness
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
OpenSSL Insecure Protocol Negotiation Weakness
Solution:
The vendor has released new versions of OpenSSL to address this issue.
Please see the referenced vendor advisories for more information.
HP HP-UX B.11.11
HP HP-UX B.11.00
OpenSSL Project OpenSSL 0.9.1 c
OpenSSL Project OpenSSL 0.9.3
OpenSSL Project OpenSSL 0.9.4
OpenSSL Project OpenSSL 0.9.6 d
OpenSSL Project OpenSSL 0.9.6 a
OpenSSL Project OpenSSL 0.9.6 m
OpenSSL Project OpenSSL 0.9.6 i
OpenSSL Project OpenSSL 0.9.6 e
OpenSSL Project OpenSSL 0.9.7 beta1
OpenSSL Project OpenSSL 0.9.7 a
OpenSSL Project OpenSSL 0.9.7 e
OpenSSL Project OpenSSL 0.9.7 g
OpenSSL Project OpenSSL 0.9.7 f
OpenSSL Project OpenSSL 0.9.7 c
OpenSSL Project OpenSSL 0.9.8
Apple Mac OS X 10.3.1
Apple Mac OS X Server 10.3.2
Apple Mac OS X 10.3.4
Apple Mac OS X Server 10.3.5
Apple Mac OS X 10.3.5
Apple Mac OS X 10.3.8
Apple Mac OS X Server 10.3.8
Apple Mac OS X Server 10.3.9
Apple Mac OS X 10.3.9
Apple Mac OS X Server 10.4
Apple Mac OS X 10.4
Apple Mac OS X Server 10.4.1
Apple Mac OS X 10.4.2
Apple Mac OS X Server 10.4.3
FreeBSD FreeBSD 5.3 -STABLE
SCO Unixware 7.1.4
Solution:
The vendor has released new versions of OpenSSL to address this issue.
Please see the referenced vendor advisories for more information.
HP HP-UX B.11.11
-
HP A.00.09.07l
http://h20293.www2.hp.com/portal/swdepot/displayProductInfo.do?product Number=OPENSSL11I -
HP A.2.0.58.01
For IPv4
http://h20293.www2.hp.com/cgi-bin/swdepot_parser.cgi/cgi/displayProduc tInfo.pl?productNumber=HPUXWSSUITE -
HP B.2.0.58.01
For IPv6
http://h20293.www2.hp.com/cgi-bin/swdepot_parser.cgi/cgi/displayProduc tInfo.pl?productNumber=HPUXWSSUITE
HP HP-UX B.11.00
-
HP A.2.0.58.01
For IPv4
http://h20293.www2.hp.com/cgi-bin/swdepot_parser.cgi/cgi/displayProduc tInfo.pl?productNumber=HPUXWSSUITE
OpenSSL Project OpenSSL 0.9.1 c
-
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz
OpenSSL Project OpenSSL 0.9.3
-
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz
OpenSSL Project OpenSSL 0.9.4
-
Debian libssl09_0.9.4-6.woody.4_alpha.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/o/openssl094/libssl09_0.9 .4-6.woody.4_alpha.deb -
Debian libssl09_0.9.4-6.woody.4_i386.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/o/openssl094/libssl09_0.9 .4-6.woody.4_i386.deb -
Debian libssl09_0.9.4-6.woody.4_powerpc.deb
Debian GNU/Linux 3.0 alias woody
http://security.debian.org/pool/updates/main/o/openssl094/libssl09_0.9 .4-6.woody.4_powerpc.deb -
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz
OpenSSL Project OpenSSL 0.9.6 d
-
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz -
Slackware openssl-solibs-0.9.6m-i386-2.tgz
Slackware 8.1:
ftp://ftp.slackware.com/pub/slackware/slackware-8.1/patches/packages/o penssl-solibs-0.9.6m-i386-2.tgz
OpenSSL Project OpenSSL 0.9.6 a
-
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz -
SuSE openssl-devel-0.9.6a-31.alpha.rpm
ftp://ftp.suse.com/pub/suse/axp/update/7.1/d2/openssl-devel-0.9.6a-31. alpha.rpm -
SuSE openssl-devel-0.9.6a-31.ppc.rpm
ftp://ftp.suse.com/pub/suse/ppc/update/7.1/d2/openssl-devel-0.9.6a-31. ppc.rpm -
SuSE openssl-devel-0.9.6a-81.i386.rpm
ftp://ftp.suse.com/pub/suse/i386/update/7.1/d2/openssl-devel-0.9.6a-81 .i386.rpm -
SuSE openssl-devel-0.9.6a-82.i386.rpm
ftp://ftp.suse.com/pub/suse/i386/update/7.2/d2/openssl-devel-0.9.6a-82 .i386.rpm
OpenSSL Project OpenSSL 0.9.6 m
-
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz
OpenSSL Project OpenSSL 0.9.6 i
-
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz -
SuSE openssl-devel-0.9.6i-12.i586.patch.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.2/rpm/i586/openssl-devel-0.9 .6i-12.i586.patch.rpm -
SuSE openssl-devel-0.9.6i-12.i586.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.2/rpm/i586/openssl-devel-0.9 .6i-12.i586.rpm -
SuSE openssl-devel-0.9.6i-21.i586.patch.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.2/rpm/i586/openssl-devel-0.9 .6i-21.i586.patch.rpm -
SuSE openssl-devel-0.9.6i-21.i586.rpm
ftp://ftp.suse.com/pub/suse/i386/update/8.2/rpm/i586/openssl-devel-0.9 .6i-21.i586.rpm
OpenSSL Project OpenSSL 0.9.6 e
-
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz
OpenSSL Project OpenSSL 0.9.7 beta1
-
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz
OpenSSL Project OpenSSL 0.9.7 a
-
Fedora Legacy openssl-0.9.7a-20.6.legacy.i386.rpm
Red Hat Linux 9:
http://download.fedoralegacy.org/redhat/9/updates/i386/openssl-0.9.7a- 20.6.legacy.i386.rpm -
Fedora Legacy openssl-0.9.7a-20.6.legacy.i686.rpm
Red Hat Linux 9:
http://download.fedoralegacy.org/redhat/9/updates/i386/openssl-0.9.7a- 20.6.legacy.i686.rpm -
Fedora Legacy openssl-0.9.7a-33.13.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/openssl-0.9.7a- 33.13.legacy.i386.rpm -
Fedora Legacy openssl-0.9.7a-33.13.legacy.i686.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/openssl-0.9.7a- 33.13.legacy.i686.rpm -
Fedora Legacy openssl-0.9.7a-35.2.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/openssl-0.9.7a- 35.2.legacy.i386.rpm -
Fedora Legacy openssl-0.9.7a-35.2.legacy.i686.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/openssl-0.9.7a- 35.2.legacy.i686.rpm -
Fedora Legacy openssl-devel-0.9.7a-20.6.legacy.i386.rpm
Red Hat Linux 9:
http://download.fedoralegacy.org/redhat/9/updates/i386/openssl-devel-0 .9.7a-20.6.legacy.i386.rpm -
Fedora Legacy openssl-devel-0.9.7a-33.13.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/openssl-devel-0 .9.7a-33.13.legacy.i386.rpm -
Fedora Legacy openssl-devel-0.9.7a-35.2.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/openssl-devel-0 .9.7a-35.2.legacy.i386.rpm -
Fedora Legacy openssl-perl-0.9.7a-20.6.legacy.i386.rpm
Red Hat Linux 9:
http://download.fedoralegacy.org/redhat/9/updates/i386/openssl-perl-0. 9.7a-20.6.legacy.i386.rpm -
Fedora Legacy openssl-perl-0.9.7a-33.13.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/openssl-perl-0. 9.7a-33.13.legacy.i386.rpm -
Fedora Legacy openssl-perl-0.9.7a-35.2.legacy.i386.rpm
Fedora Core 2:
http://download.fedoralegacy.org/fedora/2/updates/i386/openssl-perl-0. 9.7a-35.2.legacy.i386.rpm -
Fedora Legacy openssl096-0.9.6-25.12.legacy.i386.rpm
Red Hat Linux 9:
http://download.fedoralegacy.org/redhat/9/updates/i386/openssl096-0.9. 6-25.12.legacy.i386.rpm -
Fedora Legacy openssl096-0.9.6-26.3.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/openssl096-0.9. 6-26.3.legacy.i386.rpm -
Fedora Legacy openssl096b-0.9.6b-15.3.legacy.i386.rpm
Red Hat Linux 9:
http://download.fedoralegacy.org/redhat/9/updates/i386/openssl096b-0.9 .6b-15.3.legacy.i386.rpm -
Fedora Legacy openssl096b-0.9.6b-18.3.legacy.i386.rpm
Fedora Core 1:
http://download.fedoralegacy.org/fedora/1/updates/i386/openssl096b-0.9 .6b-18.3.legacy.i386.rpm -
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz -
Slackware openssl-0.9.7d-i386-2.tgz
Slackware 9.0:
ftp://ftp.slackware.com/pub/slackware/slackware-9.0/patches/packages/o penssl-0.9.7d-i386-2.tgz -
Slackware openssl-0.9.7d-i486-2.tgz
Slackware 9.1:
ftp://ftp.slackware.com/pub/slackware/slackware-9.1/patches/packages/o penssl-0.9.7d-i486-2.tgz -
Slackware openssl-solibs-0.9.7d-i386-2.tgz
Slackware 9.0:
ftp://ftp.slackware.com/pub/slackware/slackware-9.0/patches/packages/o penssl-solibs-0.9.7d-i386-2.tgz
OpenSSL Project OpenSSL 0.9.7 e
-
Debian libssl-dev_0.9.7e-3sarge1_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 7e-3sarge1_alpha.deb -
Debian libssl-dev_0.9.7e-3sarge1_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 7e-3sarge1_amd64.deb -
Debian libssl-dev_0.9.7e-3sarge1_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 7e-3sarge1_arm.deb -
Debian libssl-dev_0.9.7e-3sarge1_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 7e-3sarge1_hppa.deb -
Debian libssl-dev_0.9.7e-3sarge1_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 7e-3sarge1_i386.deb -
Debian libssl-dev_0.9.7e-3sarge1_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 7e-3sarge1_ia64.deb -
Debian libssl-dev_0.9.7e-3sarge1_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 7e-3sarge1_m68k.deb -
Debian libssl-dev_0.9.7e-3sarge1_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 7e-3sarge1_mips.deb -
Debian libssl-dev_0.9.7e-3sarge1_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 7e-3sarge1_mipsel.deb -
Debian libssl-dev_0.9.7e-3sarge1_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 7e-3sarge1_powerpc.deb -
Debian libssl-dev_0.9.7e-3sarge1_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 7e-3sarge1_s390.deb -
Debian libssl-dev_0.9.7e-3sarge1_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 7e-3sarge1_sparc.deb -
Debian libssl0.9.7_0.9.7e-3sarge1_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9 .7e-3sarge1_alpha.deb -
Debian libssl0.9.7_0.9.7e-3sarge1_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9 .7e-3sarge1_amd64.deb -
Debian libssl0.9.7_0.9.7e-3sarge1_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9 .7e-3sarge1_arm.deb -
Debian libssl0.9.7_0.9.7e-3sarge1_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9 .7e-3sarge1_hppa.deb -
Debian libssl0.9.7_0.9.7e-3sarge1_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9 .7e-3sarge1_i386.deb -
Debian libssl0.9.7_0.9.7e-3sarge1_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9 .7e-3sarge1_ia64.deb -
Debian libssl0.9.7_0.9.7e-3sarge1_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9 .7e-3sarge1_m68k.deb -
Debian libssl0.9.7_0.9.7e-3sarge1_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9 .7e-3sarge1_mips.deb -
Debian libssl0.9.7_0.9.7e-3sarge1_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9 .7e-3sarge1_mipsel.deb -
Debian libssl0.9.7_0.9.7e-3sarge1_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9 .7e-3sarge1_powerpc.deb -
Debian libssl0.9.7_0.9.7e-3sarge1_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9 .7e-3sarge1_s390.deb -
Debian libssl0.9.7_0.9.7e-3sarge1_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9 .7e-3sarge1_sparc.deb -
Debian openssl_0.9.7e-3sarge1_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e- 3sarge1_alpha.deb -
Debian openssl_0.9.7e-3sarge1_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e- 3sarge1_amd64.deb -
Debian openssl_0.9.7e-3sarge1_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e- 3sarge1_arm.deb -
Debian openssl_0.9.7e-3sarge1_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e- 3sarge1_hppa.deb -
Debian openssl_0.9.7e-3sarge1_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e- 3sarge1_i386.deb -
Debian openssl_0.9.7e-3sarge1_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e- 3sarge1_ia64.deb -
Debian openssl_0.9.7e-3sarge1_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e- 3sarge1_m68k.deb -
Debian openssl_0.9.7e-3sarge1_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e- 3sarge1_mips.deb -
Debian openssl_0.9.7e-3sarge1_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e- 3sarge1_mipsel.deb -
Debian openssl_0.9.7e-3sarge1_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e- 3sarge1_powerpc.deb -
Debian openssl_0.9.7e-3sarge1_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e- 3sarge1_s390.deb -
Debian openssl_0.9.7e-3sarge1_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e- 3sarge1_sparc.deb -
Mandriva libopenssl0.9.7-0.9.7e-5.2.102mdk.i586.rpm
Mandrivalinux 10.2:
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva libopenssl0.9.7-devel-0.9.7e-5.2.102mdk.i586.rpm
Mandrivalinux 10.2:
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva libopenssl0.9.7-static-devel-0.9.7e-5.2.102mdk.i586.rpm
Mandrivalinux 10.2:
http://www1.mandrivalinux.com/en/ftp.php3 -
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz -
Slackware openssl-0.9.7e-i486-4.tgz
Slackware 10.1:
ftp://ftp.slackware.com/pub/slackware/slackware-10.1/patches/packages/ openssl-0.9.7e-i486-4.tgz -
Slackware openssl-0.9.7g-i486-2.tgz
Slackware 10.2:
ftp://ftp.slackware.com/pub/slackware/slackware-10.2/patches/packages/ openssl-0.9.7g-i486-2.tgz -
Slackware openssl-solibs-0.9.7e-i486-4.tgz
Slackware 10.1:
ftp://ftp.slackware.com/pub/slackware/slackware-10.1/patches/packages/ openssl-solibs-0.9.7e-i486-4.tgz -
Slackware openssl-solibs-0.9.7g-i486-2.tgz
Slackware 10.2:
ftp://ftp.slackware.com/pub/slackware/slackware-10.2/patches/packages/ openssl-solibs-0.9.7g-i486-2.tgz -
SUSE openssl-0.9.7d-25.2.i586.rpm
SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/openssl-0.9.7d-25 .2.i586.rpm -
SUSE openssl-0.9.7e-3.2.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/openssl-0.9.7e-3. 2.i586.rpm -
SUSE openssl-0.9.7e-3.2.x86_64.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/openssl-0.9.7e- 3.2.x86_64.rpm -
SUSE openssl-32bit-9.3-7.1.x86_64.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/openssl-32bit-9 .3-7.1.x86_64.rpm -
SUSE openssl-devel-0.9.7d-25.2.i586.rpm
SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/openssl-devel-0.9 .7d-25.2.i586.rpm -
SUSE openssl-devel-0.9.7e-3.2.i586.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/openssl-devel-0.9 .7e-3.2.i586.rpm -
SUSE openssl-devel-0.9.7e-3.2.x86_64.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/openssl-devel-0 .9.7e-3.2.x86_64.rpm -
SUSE openssl-devel-32bit-9.3-7.1.x86_64.rpm
SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/openssl-devel-3 2bit-9.3-7.1.x86_64.rpm -
Trustix openssl-0.9.7i-1tr.i586.rpm
Trustix Secure Linux 3.0
ftp://ftp.trustix.org/pub/trustix/updates/ -
Trustix openssl-devel-0.9.7i-1tr.i586.rpm
Trustix Secure Linux 3.0
ftp://ftp.trustix.org/pub/trustix/updates/ -
Trustix openssl-support-0.9.7i-1tr.i586.rpm
Trustix Secure Linux 3.0
ftp://ftp.trustix.org/pub/trustix/updates/ -
Ubuntu libssl-dev_0.9.7e-3ubuntu0.2_amd64.deb
Ubuntu 5.04 (Hoary Hedgehog)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/libssl-dev_0.9.7 e-3ubuntu0.2_amd64.deb -
Ubuntu libssl-dev_0.9.7e-3ubuntu0.2_i386.deb
Ubuntu 5.04 (Hoary Hedgehog)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/libssl-dev_0.9.7 e-3ubuntu0.2_i386.deb -
Ubuntu libssl-dev_0.9.7e-3ubuntu0.2_powerpc.deb
Ubuntu 5.04 (Hoary Hedgehog)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/libssl-dev_0.9.7 e-3ubuntu0.2_powerpc.deb -
Ubuntu libssl0.9.7_0.9.7e-3ubuntu0.2_i386.deb
Ubuntu 5.04 (Hoary Hedgehog)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/libssl0.9.7_0.9. 7e-3ubuntu0.2_i386.deb -
Ubuntu libssl0.9.7_0.9.7e-3ubuntu0.2_powerpc.deb
Ubuntu 5.04 (Hoary Hedgehog)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/libssl0.9.7_0.9. 7e-3ubuntu0.2_powerpc.deb -
Ubuntu openssl_0.9.7e-3ubuntu0.2_amd64.deb
Ubuntu 5.04 (Hoary Hedgehog)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/openssl_0.9.7e-3 ubuntu0.2_amd64.deb -
Ubuntu openssl_0.9.7e-3ubuntu0.2_i386.deb
Ubuntu 5.04 (Hoary Hedgehog)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/openssl_0.9.7e-3 ubuntu0.2_i386.deb -
Ubuntu openssl_0.9.7e-3ubuntu0.2_powerpc.deb
Ubuntu 5.04 (Hoary Hedgehog)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/openssl_0.9.7e-3 ubuntu0.2_powerpc.deb
OpenSSL Project OpenSSL 0.9.7 g
-
Mandriva libopenssl0.9.7-0.9.7g-2.1.20060mdk.i586.rpm
Mandrivalinux 2006.0:
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva libopenssl0.9.7-devel-0.9.7g-2.1.20060mdk.i586.rpm
Mandrivalinux 2006.0:
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva libopenssl0.9.7-static-devel-0.9.7g-2.1.20060mdk.i586.rpm
Mandrivalinux 2006.0:
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva openssl-0.9.7c-3.3.M20mdk.i586.rpm
Multi Network Firewall 2.0:
http://www1.mandrivalinux.com/en/ftp.php3 -
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz -
SUSE openssl-0.9.7g-2.2.i586.rpm
SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/openssl-0.9.7g-2 .2.i586.rpm -
SUSE openssl-0.9.7g-2.2.ppc.rpm
SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/openssl-0.9.7g-2. 2.ppc.rpm -
SUSE openssl-32bit-0.9.7g-2.2.x86_64.rpm
SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/openssl-32bit- 0.9.7g-2.2.x86_64.rpm -
SUSE openssl-devel-0.9.7g-2.2.i586.rpm
SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/openssl-devel-0. 9.7g-2.2.i586.rpm -
SUSE openssl-devel-0.9.7g-2.2.x86_64.rpm
SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/openssl-devel- 0.9.7g-2.2.x86_64.rpm -
Ubuntu libssl-dev_0.9.7g-1ubuntu1.1_amd64.deb
Ubuntu 5.10 (Breezy Badger)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/libssl-dev_0.9.7 g-1ubuntu1.1_amd64.deb -
Ubuntu libssl-dev_0.9.7g-1ubuntu1.1_i386.deb
Ubuntu 5.10 (Breezy Badger)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/libssl-dev_0.9.7 g-1ubuntu1.1_i386.deb -
Ubuntu libssl-dev_0.9.7g-1ubuntu1.1_powerpc.deb
Ubuntu 5.10 (Breezy Badger)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/libssl-dev_0.9.7 g-1ubuntu1.1_powerpc.deb -
Ubuntu libssl0.9.7_0.9.7g-1ubuntu1.1_amd64.deb
Ubuntu 5.10 (Breezy Badger)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/libssl0.9.7_0.9. 7g-1ubuntu1.1_amd64.deb -
Ubuntu libssl0.9.7_0.9.7g-1ubuntu1.1_i386.deb
Ubuntu 5.10 (Breezy Badger)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/libssl0.9.7_0.9. 7g-1ubuntu1.1_i386.deb -
Ubuntu libssl0.9.7_0.9.7g-1ubuntu1.1_powerpc.deb
Ubuntu 5.10 (Breezy Badger)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/libssl0.9.7_0.9. 7g-1ubuntu1.1_powerpc.deb -
Ubuntu openssl_0.9.7g-1ubuntu1.1_amd64.deb
Ubuntu 5.10 (Breezy Badger)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/openssl_0.9.7g-1 ubuntu1.1_amd64.deb -
Ubuntu openssl_0.9.7g-1ubuntu1.1_i386.deb
Ubuntu 5.10 (Breezy Badger)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/openssl_0.9.7g-1 ubuntu1.1_i386.deb -
Ubuntu openssl_0.9.7g-1ubuntu1.1_powerpc.deb
Ubuntu 5.10 (Breezy Badger)
http://security.ubuntu.com/ubuntu/pool/main/o/openssl/openssl_0.9.7g-1 ubuntu1.1_powerpc.deb
OpenSSL Project OpenSSL 0.9.7 f
-
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz
OpenSSL Project OpenSSL 0.9.7 c
-
Conectiva openssl-devel-0.9.7h-52923U10_1cl.i386.rpm
Conectiva 10:
ftp://atualizacoes.conectiva.com.br/10/RPMS/openssl-devel-0.9.7h-52923 U10_1cl.i386.rpm -
Conectiva openssl-devel-static-0.9.7h-52923U10_1cl.i386.rpm
Conectiva 10:
ftp://atualizacoes.conectiva.com.br/10/RPMS/openssl-devel-static-0.9.7 h-52923U10_1cl.i386.rpm -
Conectiva openssl-doc-0.9.7h-52923U10_1cl.i386.rpm
Conectiva 10:
ftp://atualizacoes.conectiva.com.br/10/RPMS/openssl-doc-0.9.7h-52923U1 0_1cl.i386.rpm -
Conectiva openssl-progs-0.9.7h-52923U10_1cl.i386.rpm
Conectiva 10:
ftp://atualizacoes.conectiva.com.br/10/RPMS/openssl-progs-0.9.7h-52923 U10_1cl.i386.rpm -
Conectiva openssl0.9.7-0.9.7h-52923U10_1cl.i386.rpm
Conectiva 10:
ftp://atualizacoes.conectiva.com.br/10/RPMS/openssl0.9.7-0.9.7h-52923U 10_1cl.i386.rpm -
Mandriva lib64openssl0.9.7-0.9.7c-3.3.C30mdk.x86_64.rpm
Corporate 3.0/X86_64:
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva lib64openssl0.9.7-devel-0.9.7c-3.3.C30mdk.x86_64.rpm
Corporate 3.0/X86_64:
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva lib64openssl0.9.7-static-devel-0.9.7c-3.3.C30mdk.x86_64.rpm
Corporate 3.0/X86_64:
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva openssl-0.9.7c-3.3.C30mdk.i586.rpm
Corporate 3.0:
http://www1.mandrivalinux.com/en/ftp.php3 -
Mandriva openssl-0.9.7c-3.3.C30mdk.x86_64.rpm
Corporate 3.0/X86_64:
http://www1.mandrivalinux.com/en/ftp.php3 -
OpenSSL Project openssl-0.9.7h.tar.gz
http://www.openssl.org/source/openssl-0.9.7h.tar.gz
OpenSSL Project OpenSSL 0.9.8
-
OpenSSL Project openssl-0.9.8a.tar.gz
http://www.openssl.org/source/openssl-0.9.8a.tar.gz
Apple Mac OS X 10.3.1
-
Apple SecUpd2005-009Pan.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08840&cat= 1&platform=osx&method=sa/
Apple Mac OS X Server 10.3.2
-
Apple SecUpdSrvr2005-009Pan.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08841&cat= 1&platform=osx&method=sa/
Apple Mac OS X 10.3.4
-
Apple SecUpd2005-009Pan.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08840&cat= 1&platform=osx&method=sa/
Apple Mac OS X Server 10.3.5
-
Apple SecUpdSrvr2005-009Pan.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08841&cat= 1&platform=osx&method=sa/
Apple Mac OS X 10.3.5
-
Apple SecUpd2005-009Pan.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08840&cat= 1&platform=osx&method=sa/
Apple Mac OS X 10.3.8
-
Apple SecUpd2005-009Pan.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08840&cat= 1&platform=osx&method=sa/
Apple Mac OS X Server 10.3.8
-
Apple SecUpdSrvr2005-009Pan.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08841&cat= 1&platform=osx&method=sa/
Apple Mac OS X Server 10.3.9
-
Apple SecUpdSrvr2005-009Pan.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08841&cat= 1&platform=osx&method=sa/
Apple Mac OS X 10.3.9
-
Apple SecUpd2005-009Pan.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08840&cat= 1&platform=osx&method=sa/
Apple Mac OS X Server 10.4
-
Apple SecUpdSrvr2005-009Ti.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08839&cat= 1&platform=osx&method=sa/SecUpdSrvr2005-009Ti.dmg
Apple Mac OS X 10.4
-
Apple SecUpd2005-009Ti.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08835&cat= 1&platform=osx&method=sa/SecUpd2005-009Ti.dmg
Apple Mac OS X Server 10.4.1
-
Apple SecUpdSrvr2005-009Ti.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08839&cat= 1&platform=osx&method=sa/SecUpdSrvr2005-009Ti.dmg
Apple Mac OS X 10.4.2
-
Apple SecUpd2005-009Ti.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08835&cat= 1&platform=osx&method=sa/SecUpd2005-009Ti.dmg
Apple Mac OS X Server 10.4.3
-
Apple SecUpdSrvr2005-009Ti.dmg
http://wsidecar.apple.com/cgi-bin/nph-reg3rdpty1.pl/product=08839&cat= 1&platform=osx&method=sa/SecUpdSrvr2005-009Ti.dmg
FreeBSD FreeBSD 5.3 -STABLE
-
FreeBSD openssl.patch
ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/patches/SA-05:21/openssl.patch
SCO Unixware 7.1.4
-
SCO openssl-0.9.7i.image
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.48
References
OpenSSL Insecure Protocol Negotiation Weakness
References:
References:
- ASA-2006-260 - HP-UX OpenSSL Denial of Service (DoS), Increase Privilege (HPSBUX (Avaya)
- HPSBUX02174 SSRT061239 rev.1 HP-UX Running OpenSSL Denial of Service (DoS), Incr (HP)
- IBM Director Release Notes Version 5.10 Update 3 (IBM)
- RHSA-2008:0264-3 Moderate: Red Hat Network Satellite Server Solaris client secur (Red Hat)
- RHSA-2008:0525-5 Red Hat Network Satellite Server Solaris client security update (Red Hat)
- RHSA-2008:0629-3 Moderate: Red Hat Network Satellite Server Solaris client secur (Red Hat)