OpenSSL Timing Attack RSA Private Key Information Disclosure Vulnerability
BID:7101
Info
OpenSSL Timing Attack RSA Private Key Information Disclosure Vulnerability
| Bugtraq ID: | 7101 |
| Class: | Configuration Error |
| CVE: |
CVE-2003-0147 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 14 2003 12:00AM |
| Updated: | Jul 11 2009 09:06PM |
| Credit: | Discovery credited to David Brumley and Dan Boneh. |
| Vulnerable: |
VanDyke SecureCRT 4.0.4 VanDyke SecureCRT 4.0.3 VanDyke SecureCRT 4.0.2 VanDyke SecureCRT 4.0.1 VanDyke SecureCRT 3.4.8 VanDyke SecureCRT 3.4.7 VanDyke SecureCRT 3.4.6 VanDyke SecureCRT 3.4.5 VanDyke SecureCRT 3.4.4 VanDyke SecureCRT 3.4.3 VanDyke SecureCRT 3.4.2 VanDyke SecureCRT 3.4.1 VanDyke SecureCRT 3.4 VanDyke SecureCRT 3.3.4 VanDyke SecureCRT 3.3.3 VanDyke SecureCRT 3.3.2 VanDyke SecureCRT 3.3.1 VanDyke SecureCRT 3.3 VanDyke SecureCRT 3.2.2 VanDyke SecureCRT 3.2.1 VanDyke SecureCRT 3.2 VanDyke SecureCRT 3.1.2 VanDyke SecureCRT 3.1.1 VanDyke SecureCRT 3.1 VanDyke SecureCRT 3.0 VanDyke SecureCRT 2.4 Sun Cobalt RaQ XTR Sun Cobalt RaQ 550 Sun Cobalt RaQ 4 Sun Cobalt Qube 3 Stunnel Stunnel 4.0 4 Stunnel Stunnel 4.0 3 Stunnel Stunnel 4.0 2 Stunnel Stunnel 4.0 1 Stunnel Stunnel 4.0 0 Stunnel Stunnel 3.22 Stunnel Stunnel 3.21 Stunnel Stunnel 3.19 Stunnel Stunnel 3.18 Stunnel Stunnel 3.17 Stunnel Stunnel 3.16 Stunnel Stunnel 3.15 Stunnel Stunnel 3.14 Stunnel Stunnel 3.13 Stunnel Stunnel 3.12 Stunnel Stunnel 3.11 Stunnel Stunnel 3.9 Stunnel Stunnel 3.8 Stunnel Stunnel 3.7 Stunnel Stunnel 3.20 Stunnel Stunnel 3.10 SSH Communications Security IPSEC Express Toolkit SSH Communications Security Certificate/TLS Toolkit SGI IRIX 6.5.19 Redhat mgetty-sendfax-1.1.14-8.i386.rpm 2.2 Oracle Oracle9i Standard Edition 9.2 Oracle Oracle9i Standard Edition 9.0.1 Oracle Oracle9i Standard Edition 8.1.7 Oracle Oracle9i Personal Edition 9.2 Oracle Oracle9i Personal Edition 9.0.1 Oracle Oracle9i Personal Edition 8.1.7 Oracle Oracle9i Enterprise Edition 9.2 .0 Oracle Oracle9i Enterprise Edition 9.0.1 Oracle Oracle9i Enterprise Edition 8.1.7 Oracle Oracle9i Application Server 9.0.3 Oracle Oracle9i Application Server 9.0.2 Oracle Oracle9i Application Server 1.0.2 .2 Oracle Oracle9i Application Server 1.0.2 .1s Oracle Oracle HTTP Server 9.2 .0 Oracle Oracle HTTP Server 9.0.1 Oracle Oracle HTTP Server 8.1.7 OpenSSL Project OpenSSL 0.9.7 a OpenSSL Project OpenSSL 0.9.7 OpenSSL Project OpenSSL 0.9.6 i OpenSSL Project OpenSSL 0.9.6 h OpenSSL Project OpenSSL 0.9.6 g OpenSSL Project OpenSSL 0.9.6 e OpenSSL Project OpenSSL 0.9.6 d OpenSSL Project OpenSSL 0.9.6 c OpenSSL Project OpenSSL 0.9.6 b OpenSSL Project OpenSSL 0.9.6 a OpenSSL Project OpenSSL 0.9.6 OpenPKG OpenPKG 1.2 OpenPKG OpenPKG 1.1 OpenPKG OpenPKG Current mod_ssl mod_ssl 2.8.14 Intoto iGateway 3.2 HP HP-UX 11.22 HP HP-UX 11.11 HP HP-UX 11.0 GNU Transport Layer Security Library 0.8.5 GNU Transport Layer Security Library 0.8.4 GNU Transport Layer Security Library 0.8.3 GNU Transport Layer Security Library 0.8.2 GNU Transport Layer Security Library 0.8.1 GNU Transport Layer Security Library 0.8 .0 GNU libgcrypt 1.1.12 GNU libgcrypt 1.1.11 GNU libgcrypt 1.1.10 GNU libgcrypt 1.1.9 GNU libgcrypt 1.1.8 Foundry Networks Ironview F5 BIG-IP Blade Controller 4.2.3 PTF-01 F5 BIG-IP 4.5 F5 BIG-IP 4.4 F5 BIG-IP 4.3 F5 BIG-IP 4.2 F5 3-DNS 4.5 Crypto++ Crypto++ Library 5.0 Crypto++ Crypto++ Library 4.2 Covalent Fast Start Server 3.3 Covalent Fast Start Server 3.2 Covalent Fast Start Server 3.1 Covalent Enterprise Ready Server 2.3 Covalent Enterprise Ready Server 2.2 Covalent Enterprise Ready Server 2.1 Computer Associates eTrust Security Command Center 1.0 Compaq Tru64 5.1 b Compaq Tru64 5.1 a Compaq Tru64 5.1 Compaq Tru64 5.0 a Compaq Tru64 4.0 g Compaq Tru64 4.0 f Compaq OpenVMS 7.3 VAX Compaq OpenVMS 7.3 Alpha Compaq OpenVMS 7.2.1 Alpha Compaq OpenVMS 7.2 -2 Alpha Compaq OpenVMS 7.2 -1H2 Alpha Compaq OpenVMS 7.2 -1H1 Alpha Compaq OpenVMS 7.2 VAX Compaq OpenVMS 7.2 Alpha Compaq OpenVMS 7.1 -2 Alpha Compaq OpenVMS 7.1 VAX Compaq OpenVMS 7.1 Alpha Compaq OpenVMS 6.2 VAX Compaq OpenVMS 6.2 Alpha Compaq OpenVMS 6.2 |
| Not Vulnerable: |
VanDyke SecureCRT 4.0.5 OpenSSL Project OpenSSL 0.9.7 b OpenSSL Project OpenSSL 0.9.6 j OpenSSH OpenSSH 3.6.1 HP HP-UX Apache-Based Web Server 1.0 .07.01 Crypto++ Crypto++ Library 5.1 |
Exploit / POC
OpenSSL Timing Attack RSA Private Key Information Disclosure Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
OpenSSL Timing Attack RSA Private Key Information Disclosure Vulnerability
Solution:
It is reported that certain versions of Computer Associates eTrust Security Command Center are prone to this vulnerability. Customers are advised to contact the vendor for further information pertaining to obtaining and applying appropriate updates.
Hewlett-Packard has released revision 1 of this advisory (HPSBUX0309-280), which contains fix information to address this issue in J2SE and JSSE, as well as new information on how to patch affected Servicecontrol Manager software. Users wishing to obtain an updated version of Servicecontrol Manager are advised to search for "SCM' and the following webpage:
http://software.hp.com
Hewlett-Packard ustomers are advised to upgrade as soon as possible. Further information regarding obtaining and applying fixes can be found in the referenced advisory.
SGI have released an advisory (20030501-01-I) which contains a fix to address this issue.
Hewlett-Packard have released an advisory (HPSBUX0304-0255 rev. 2) which contains fix information to address this issue. Customers are advised to upgrade to hp-ux apache-based web server v.1.0.03.01 or later, which includes OpenSSL 0.9.6i with patches.
OpenPKG have released an advisory (OpenPKG-SA-2003.019), which contains fix details that address this issue. Additionally, OpenPKG has released advisory OpenPKG-SA-2003.020 to address the default configuration of mod_ssl in Apache.
Trustix have released an advisory (TSLSA-2003-0010: openssl), which contains fix details that address this issue.
Patches have been released for OpenBSD 3.1 and 3.2 which address this issue.
Gentoo Linux has released an advisory. Users who have installed dev-libs/openssl are advised to upgrade to openssl-0.9.6i-r1 by issuing the following commands:
emerge sync
emerge openssl
emerge clean
Gentoo Linux users who have installed net-www/mod_ssl are advised to upgrade to mod_ssl-2.8.14 by issuing the following commands:
emerge sync
emerge mod_ssl
emerge clean
Sorcerer Linux has released an advisory. Users are advised to issue the following commands to update affected systems:
augur synch && augur update
Stunnel has released patches which addresses this issue. When released, Stunnel 4.05 and 3.23 are also expected to address this vulnerability.
SCO has released a security advisory containing fixes which address this issue in OpenLinux.
Apple has released a security advisory (APPLE-SA-2003-03-24) which contains an update. Information on how to obtain the fix can be found in the attached advisory.
NetBSD has made a source tree fix available, and has addressed this issue in NetBSD advisory 2003-005. See referenced advisory for additional details.
Red Hat has released an advisory (RHSA-2003:101-01). Information about obtaining and applying fixes are available in the referenced advisory.
Debian has released a security advisory (DSA 288-1) containing fixes which address this and other issues. Further information regarding how to obtain and apply fixes can be found in the attached advisory.
Covalent have released patches which address this issue. Further information can be found in the attached update reference.
An updated version of Crypto++ has been released which addresses this issue. Users are advised to upgrade as soon as possible.
F5 has released a patch which address this issue in their vulnerable products. A patch and further information can be obtained from the following location:
http://tech.f5.com/home/bigip/solutions/security/sol2379.html
Foundry Networks has reported that Ironview is affected by this issue. A patch is currently being developed which will address this issue.
FreeBSD has released a security advisory containing patches which address this issue. Users are advised to upgrade as soon as possible.
A patch has been released for Intot iGateway 3.2 and can be obtained by contacting the vendor at: [email protected]
VanDyke has announced that SecureCRT implementing the SSH1 protocol is affected by this issue. A fix is currently being developed to address this issue in version 4.0.4 and earlier. However, SecureCRT 4.0.5 is not affected by this issue.
Immunix has released updated OpenSSL packages which address this issue. Users are advised to upgrade as soon as possible.
SSH has released a patch for IPSEC Express Toolkit. Users are advised to contact the vendor for further information.
HP has released SSL updates for OpenVMS systems. Please see the attached HP OpenVMS advisory (SSRT3499, SSRT3518) for details on obtaining and applying fixes. HP has also released an advisory for Tru64 UNIX systems that contains details about obtaining and applying patches. Please see advisory SSRT3499, SSRT3518 (Tru64) for further information.
Oracle has released an advisory and patches to address this issue. User are advised to obtain patches from the Oracle metalink site listed in references.
Fixes available:
Sun Cobalt RaQ XTR
OpenPKG OpenPKG Current
Stunnel Stunnel 3.20
Sun Cobalt RaQ 4
OpenSSL Project OpenSSL 0.9.6 d
OpenSSL Project OpenSSL 0.9.6 a
OpenSSL Project OpenSSL 0.9.6
OpenSSL Project OpenSSL 0.9.6 i
OpenSSL Project OpenSSL 0.9.6 c
OpenSSL Project OpenSSL 0.9.6 e
OpenSSL Project OpenSSL 0.9.7 a
Covalent Enterprise Ready Server 2.1
Redhat mgetty-sendfax-1.1.14-8.i386.rpm 2.2
Covalent Enterprise Ready Server 2.3
mod_ssl mod_ssl 2.8.14
Stunnel Stunnel 3.12
Stunnel Stunnel 3.14
Stunnel Stunnel 3.15
Stunnel Stunnel 3.16
Stunnel Stunnel 3.19
Stunnel Stunnel 3.8
Stunnel Stunnel 4.0 4
Stunnel Stunnel 4.0 2
Stunnel Stunnel 4.0 1
VanDyke SecureCRT 4.0.2
VanDyke SecureCRT 4.0.3
VanDyke SecureCRT 4.0.4
SGI IRIX 6.5.19
Solution:
It is reported that certain versions of Computer Associates eTrust Security Command Center are prone to this vulnerability. Customers are advised to contact the vendor for further information pertaining to obtaining and applying appropriate updates.
Hewlett-Packard has released revision 1 of this advisory (HPSBUX0309-280), which contains fix information to address this issue in J2SE and JSSE, as well as new information on how to patch affected Servicecontrol Manager software. Users wishing to obtain an updated version of Servicecontrol Manager are advised to search for "SCM' and the following webpage:
http://software.hp.com
Hewlett-Packard ustomers are advised to upgrade as soon as possible. Further information regarding obtaining and applying fixes can be found in the referenced advisory.
SGI have released an advisory (20030501-01-I) which contains a fix to address this issue.
Hewlett-Packard have released an advisory (HPSBUX0304-0255 rev. 2) which contains fix information to address this issue. Customers are advised to upgrade to hp-ux apache-based web server v.1.0.03.01 or later, which includes OpenSSL 0.9.6i with patches.
OpenPKG have released an advisory (OpenPKG-SA-2003.019), which contains fix details that address this issue. Additionally, OpenPKG has released advisory OpenPKG-SA-2003.020 to address the default configuration of mod_ssl in Apache.
Trustix have released an advisory (TSLSA-2003-0010: openssl), which contains fix details that address this issue.
Patches have been released for OpenBSD 3.1 and 3.2 which address this issue.
Gentoo Linux has released an advisory. Users who have installed dev-libs/openssl are advised to upgrade to openssl-0.9.6i-r1 by issuing the following commands:
emerge sync
emerge openssl
emerge clean
Gentoo Linux users who have installed net-www/mod_ssl are advised to upgrade to mod_ssl-2.8.14 by issuing the following commands:
emerge sync
emerge mod_ssl
emerge clean
Sorcerer Linux has released an advisory. Users are advised to issue the following commands to update affected systems:
augur synch && augur update
Stunnel has released patches which addresses this issue. When released, Stunnel 4.05 and 3.23 are also expected to address this vulnerability.
SCO has released a security advisory containing fixes which address this issue in OpenLinux.
Apple has released a security advisory (APPLE-SA-2003-03-24) which contains an update. Information on how to obtain the fix can be found in the attached advisory.
NetBSD has made a source tree fix available, and has addressed this issue in NetBSD advisory 2003-005. See referenced advisory for additional details.
Red Hat has released an advisory (RHSA-2003:101-01). Information about obtaining and applying fixes are available in the referenced advisory.
Debian has released a security advisory (DSA 288-1) containing fixes which address this and other issues. Further information regarding how to obtain and apply fixes can be found in the attached advisory.
Covalent have released patches which address this issue. Further information can be found in the attached update reference.
An updated version of Crypto++ has been released which addresses this issue. Users are advised to upgrade as soon as possible.
F5 has released a patch which address this issue in their vulnerable products. A patch and further information can be obtained from the following location:
http://tech.f5.com/home/bigip/solutions/security/sol2379.html
Foundry Networks has reported that Ironview is affected by this issue. A patch is currently being developed which will address this issue.
FreeBSD has released a security advisory containing patches which address this issue. Users are advised to upgrade as soon as possible.
A patch has been released for Intot iGateway 3.2 and can be obtained by contacting the vendor at: [email protected]
VanDyke has announced that SecureCRT implementing the SSH1 protocol is affected by this issue. A fix is currently being developed to address this issue in version 4.0.4 and earlier. However, SecureCRT 4.0.5 is not affected by this issue.
Immunix has released updated OpenSSL packages which address this issue. Users are advised to upgrade as soon as possible.
SSH has released a patch for IPSEC Express Toolkit. Users are advised to contact the vendor for further information.
HP has released SSL updates for OpenVMS systems. Please see the attached HP OpenVMS advisory (SSRT3499, SSRT3518) for details on obtaining and applying fixes. HP has also released an advisory for Tru64 UNIX systems that contains details about obtaining and applying patches. Please see advisory SSRT3499, SSRT3518 (Tru64) for further information.
Oracle has released an advisory and patches to address this issue. User are advised to obtain patches from the Oracle metalink site listed in references.
Fixes available:
Sun Cobalt RaQ XTR
-
Sun RaQ550-All-Security-0.0.1-16343.pkg
http://ftp.cobalt.sun.com/pub/packages/raq550/all/RaQ550-All-Security- 0.0.1-16343.pkg -
Sun RaQXTR-All-Security-1.0.1-16343.pkg
http://ftp.cobalt.sun.com/pub/packages/raqxtr/eng/RaQXTR-All-Security- 1.0.1-16343.pkg
OpenPKG OpenPKG Current
-
OpenPKG apache-1.3.27-20030318.src.rpm
ftp://ftp.openpkg.org/current/SRC/apache-1.3.27-20030318.src.rpm
Stunnel Stunnel 3.20
-
Stunnel blinding-3.x_bri.patch
http://www.stunnel.org/patches/desc/blinding-3.x_bri.html
Sun Cobalt RaQ 4
-
Sun RaQ4-All-Security-2.0.1-16343.pkg
http://ftp.cobalt.sun.com/pub/packages/raq4/eng/RaQ4-All-Security-2.0. 1-16343.pkg
OpenSSL Project OpenSSL 0.9.6 d
-
OpenSSL Project openssl-0.9.6j.tar.gz
http://www.openssl.org/source/openssl-0.9.6j.tar.gz
OpenSSL Project OpenSSL 0.9.6 a
-
Conectiva openssl-0.9.6a-3U70_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/7.0/RPMS/openssl-0.9.6a-3U70_6cl.i 386.rpm -
Conectiva openssl-devel-0.9.6a-3U70_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/7.0/RPMS/openssl-devel-0.9.6a-3U70 _6cl.i386.rpm -
Conectiva openssl-devel-static-0.9.6a-3U70_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/7.0/RPMS/openssl-devel-static-0.9. 6a-3U70_6cl.i386.rpm -
Conectiva openssl-doc-0.9.6a-3U70_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/7.0/RPMS/openssl-doc-0.9.6a-3U70_6 cl.i386.rpm -
Conectiva openssl-progs-0.9.6a-3U70_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/7.0/RPMS/openssl-progs-0.9.6a-3U70 _6cl.i386.rpm -
OpenSSL Project openssl-0.9.6j.tar.gz
http://www.openssl.org/source/openssl-0.9.6j.tar.gz
OpenSSL Project OpenSSL 0.9.6
-
Conectiva openssl-0.9.6-4U60_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/6.0/RPMS/openssl-0.9.6-4U60_6cl.i3 86.rpm -
Conectiva openssl-devel-0.9.6-4U60_6cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/6.0/RPMS/openssl-devel-0.9.6-4U60_ 6cl.i386.rpm -
EnGarde Secure Linux openssl-0.9.6-1.0.19.i386.rpm
ftp://ftp.engardelinux.org/pub/engarde/stable/updates/i386/openssl-0.9 .6-1.0.19.i386.rpm -
EnGarde Secure Linux openssl-0.9.6-1.0.19.i686.rpm
ftp://ftp.engardelinux.org/pub/engarde/stable/updates/i686/openssl-0.9 .6-1.0.19.i686.rpm -
EnGarde Secure Linux openssl-misc-0.9.6-1.0.19.i386.rpm
ftp://ftp.engardelinux.org/pub/engarde/stable/updates/i386/openssl-mis c-0.9.6-1.0.19.i386.rpm -
EnGarde Secure Linux openssl-misc-0.9.6-1.0.19.i686.rpm
ftp://ftp.engardelinux.org/pub/engarde/stable/updates/i686/openssl-mis c-0.9.6-1.0.19.i686.rpm -
OpenSSL Project openssl-0.9.6j.tar.gz
http://www.openssl.org/source/openssl-0.9.6j.tar.gz -
SCO openssl-0.9.6-21.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1.1/Server/CSSA-2003-014.0/R PMS/openssl-0.9.6-21.i386.rpm -
SCO openssl-0.9.6-21.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1.1/Workstation/CSSA-2003-01 4.0/RPMS/openssl-0.9.6-21.i386.rpm -
SCO openssl-0.9.6-21.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1/Server/CSSA-2003-014.0/RPM S/openssl-0.9.6-21.i386.rpm -
SCO openssl-0.9.6-21.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1/Workstation/CSSA-2003-014. 0/RPMS/openssl-0.9.6-21.i386.rpm -
SCO openssl-devel-0.9.6-21.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1.1/Server/CSSA-2003-014.0/R PMS/openssl-devel-0.9.6-21.i386.rpm -
SCO openssl-devel-0.9.6-21.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1.1/Workstation/CSSA-2003-01 4.0/RPMS/openssl-devel-0.9.6-21.i386.rpm -
SCO openssl-devel-0.9.6-21.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1/Server/CSSA-2003-014.0/RPM S/openssl-devel-0.9.6-21.i386.rpm -
SCO openssl-devel-0.9.6-21.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1/Workstation/CSSA-2003-014. 0/RPMS/openssl-devel-0.9.6-21.i386.rpm -
SCO openssl-devel-static-0.9.6-21.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1.1/Server/CSSA-2003-014.0/R PMS/openssl-devel-static-0.9.6-21.i386.rpm -
SCO openssl-devel-static-0.9.6-21.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1.1/Workstation/CSSA-2003-01 4.0/RPMS/openssl-devel-static-0.9.6-21.i386.rpm -
SCO openssl-devel-static-0.9.6-21.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1/Server/CSSA-2003-014.0/RPM S/openssl-devel-static-0.9.6-21.i386.rpm -
SCO openssl-devel-static-0.9.6-21.i386.rpm
ftp://ftp.sco.com/pub/updates/OpenLinux/3.1/Workstation/CSSA-2003-014. 0/RPMS/openssl-devel-static-0.9.6-21.i386.rpm -
Sun openssl096-0.9.6-16.7.i386.rpm
ftp://ftp.cobalt.sun.com/pub/products/sunlinux/5.0/en/updates/i386/RPM S/openssl096-0.9.6-16.7.i386.rpm -
Trustix openssl-0.9.6-13tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.1/RPMS/openssl-0.9.6-13tr. i586.rpm -
Trustix openssl-0.9.6-13tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.2/RPMS/openssl-0.9.6-13tr. i586.rpm -
Trustix openssl-0.9.6-13tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.5/RPMS/openssl-0.9.6-13tr. i586.rpm -
Trustix openssl-0.9.6-13tr.src.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.1/SRPMS/openssl-0.9.6-13tr .src.rpm -
Trustix openssl-0.9.6-13tr.src.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.2/SRPMS/openssl-0.9.6-13tr .src.rpm -
Trustix openssl-0.9.6-13tr.src.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.5/SRPMS/openssl-0.9.6-13tr .src.rpm -
Trustix openssl-devel-0.9.6-13tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.1/RPMS/openssl-devel-0.9.6 -13tr.i586.rpm -
Trustix openssl-devel-0.9.6-13tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.2/RPMS/openssl-devel-0.9.6 -13tr.i586.rpm -
Trustix openssl-devel-0.9.6-13tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.5/RPMS/openssl-devel-0.9.6 -13tr.i586.rpm -
Trustix openssl-python-0.9.6-13tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.1/RPMS/openssl-python-0.9. 6-13tr.i586.rpm -
Trustix openssl-python-0.9.6-13tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.2/RPMS/openssl-python-0.9. 6-13tr.i586.rpm -
Trustix openssl-python-0.9.6-13tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.5/RPMS/openssl-python-0.9. 6-13tr.i586.rpm -
Trustix openssl-support-0.9.6-13tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.1/RPMS/openssl-support-0.9 .6-13tr.i586.rpm -
Trustix openssl-support-0.9.6-13tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.2/RPMS/openssl-support-0.9 .6-13tr.i586.rpm -
Trustix openssl-support-0.9.6-13tr.i586.rpm
ftp://ftp.trustix.net/pub/Trustix/updates/1.5/RPMS/openssl-support-0.9 .6-13tr.i586.rpm
OpenSSL Project OpenSSL 0.9.6 i
-
HP Apache-Based Web Server 1.3.27.02
http://www.software.hp.com/cgi-bin/swdepot_parser.cgi/cgi/displayProdu ctInfo.pl?productNumber=B9415AA132702 -
HP hp-ux apache-based web server v.1.0.03.01
http://www.software.hp.com/cgi-bin/swdepot_parser.cgi/cgi/displayProdu ctInfo.pl?productNumber=HPUXWSSUITE -
HP hp-ux apache-based web server v.1.0.07.01
http://www.software.hp.com/cgi-bin/swdepot_parser.cgi/cgi/displayProdu ctInfo.pl?productNumber=HPUXWSSUITE -
Mandrake libopenssl0-0.9.6i-1.1mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-0.9.6i-1.1mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-0.9.6i-1.4mdk.i586.rpm
Corporate Server 2.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-0.9.6i-1.4mdk.i586.rpm
Mandrake Linux 8.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-0.9.6i-1.4mdk.i586.rpm
Mandrake Linux 8.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-0.9.6i-1.4mdk.i586.rpm
Mandrake Linux 9.0
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-0.9.6i-1.4mdk.i586.rpm
Multi Network Firewall 8.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-0.9.6i-1.4mdk.ia64.rpm
Mandrake Linux 8.1/IA64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-0.9.6i-1.4mdk.ppc.rpm
Mandrake Linux 8.2/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-devel-0.9.6i-1.4mdk.i586.rpm
Corporate Server 2.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-devel-0.9.6i-1.4mdk.i586.rpm
Mandrake Linux 8.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-devel-0.9.6i-1.4mdk.i586.rpm
Mandrake Linux 9.0
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-devel-0.9.6i-1.4mdk.ia64.rpm
Mandrake Linux 8.1/IA64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-devel-0.9.6i-1.4mdk.ppc.rpm
Mandrake Linux 8.2/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-static-devel-0.9.6i-1.4mdk.i586.rpm
Corporate Server 2.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-static-devel-0.9.6i-1.4mdk.i586.rpm
Mandrake Linux 8.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-static-devel-0.9.6i-1.4mdk.i586.rpm
Mandrake Linux 8.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-static-devel-0.9.6i-1.4mdk.i586.rpm
Mandrake Linux 9.0
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-static-devel-0.9.6i-1.4mdk.ia64.rpm
Mandrake Linux 8.1/IA64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0-static-devel-0.9.6i-1.4mdk.ppc.rpm
Mandrake Linux 8.2/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake openssl-0.9.6i-1.3mdk.i586.rpm
Mandrake Linux 8.0
http://www.mandrakesecure.net/en/ftp.php -
Mandrake openssl-0.9.6i-1.3mdk.ppc.rpm
Mandrake Linux 8.0/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake openssl-0.9.6i-1.4mdk.i586.rpm
Corporate Server 2.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake openssl-0.9.6i-1.4mdk.i586.rpm
Mandrake Linux 8.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake openssl-0.9.6i-1.4mdk.i586.rpm
Mandrake Linux 8.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake openssl-0.9.6i-1.4mdk.i586.rpm
Mandrake Linux 9.0
http://www.mandrakesecure.net/en/ftp.php -
Mandrake openssl-0.9.6i-1.4mdk.i586.rpm
Multi Network Firewall 8.2
http://www.mandrakesecure.net/en/ftp.php -
Mandrake openssl-0.9.6i-1.4mdk.ia64.rpm
Mandrake Linux 8.1/IA64
http://www.mandrakesecure.net/en/ftp.php -
Mandrake openssl-0.9.6i-1.4mdk.ppc.rpm
Mandrake Linux 8.2/PPC
http://www.mandrakesecure.net/en/ftp.php -
OpenSSL Project openssl-0.9.6j.tar.gz
http://www.openssl.org/source/openssl-0.9.6j.tar.gz
OpenSSL Project OpenSSL 0.9.6 c
-
Conectiva openssl-0.9.6c-2U80_5cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/8/RPMS/openssl-0.9.6c-2U80_5cl.i38 6.rpm -
Conectiva openssl-devel-0.9.6c-2U80_5cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/8/RPMS/openssl-devel-0.9.6c-2U80_5 cl.i386.rpm -
Conectiva openssl-devel-static-0.9.6c-2U80_5cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/8/RPMS/openssl-devel-static-0.9.6c -2U80_5cl.i386.rpm -
Conectiva openssl-doc-0.9.6c-2U80_5cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/8/RPMS/openssl-doc-0.9.6c-2U80_5cl .i386.rpm -
Conectiva openssl-progs-0.9.6c-2U80_5cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/8/RPMS/openssl-progs-0.9.6c-2U80_5 cl.i386.rpm -
Debian libssl-dev_0.9.6c-0.potato.6_alpha.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-0.potato.6_alpha.deb -
Debian libssl-dev_0.9.6c-0.potato.6_arm.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-0.potato.6_arm.deb -
Debian libssl-dev_0.9.6c-0.potato.6_i386.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-0.potato.6_i386.deb -
Debian libssl-dev_0.9.6c-0.potato.6_m68k.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-0.potato.6_m68k.deb -
Debian libssl-dev_0.9.6c-0.potato.6_powerpc.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-0.potato.6_powerpc.deb -
Debian libssl-dev_0.9.6c-0.potato.6_sparc.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-0.potato.6_sparc.deb -
Debian libssl-dev_0.9.6c-2.woody.3_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-2.woody.3_alpha.deb -
Debian libssl-dev_0.9.6c-2.woody.3_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-2.woody.3_arm.deb -
Debian libssl-dev_0.9.6c-2.woody.3_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-2.woody.3_hppa.deb -
Debian libssl-dev_0.9.6c-2.woody.3_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-2.woody.3_i386.deb -
Debian libssl-dev_0.9.6c-2.woody.3_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-2.woody.3_ia64.deb -
Debian libssl-dev_0.9.6c-2.woody.3_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-2.woody.3_m68k.deb -
Debian libssl-dev_0.9.6c-2.woody.3_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-2.woody.3_mips.deb -
Debian libssl-dev_0.9.6c-2.woody.3_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-2.woody.3_mipsel.deb -
Debian libssl-dev_0.9.6c-2.woody.3_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-2.woody.3_powerpc.deb -
Debian libssl-dev_0.9.6c-2.woody.3_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-2.woody.3_s390.deb -
Debian libssl-dev_0.9.6c-2.woody.3_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9. 6c-2.woody.3_sparc.deb -
Debian libssl0.9.6_0.9.6c-0.potato.6_alpha.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-0.potato.6_alpha.deb -
Debian libssl0.9.6_0.9.6c-0.potato.6_arm.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-0.potato.6_arm.deb -
Debian libssl0.9.6_0.9.6c-0.potato.6_i386.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-0.potato.6_i386.deb -
Debian libssl0.9.6_0.9.6c-0.potato.6_m68k.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-0.potato.6_m68k.deb -
Debian libssl0.9.6_0.9.6c-0.potato.6_powerpc.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-0.potato.6_powerpc.deb -
Debian libssl0.9.6_0.9.6c-0.potato.6_sparc.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-0.potato.6_sparc.deb -
Debian libssl0.9.6_0.9.6c-2.woody.3_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-2.woody.3_alpha.deb -
Debian libssl0.9.6_0.9.6c-2.woody.3_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-2.woody.3_arm.deb -
Debian libssl0.9.6_0.9.6c-2.woody.3_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-2.woody.3_hppa.deb -
Debian libssl0.9.6_0.9.6c-2.woody.3_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-2.woody.3_i386.deb -
Debian libssl0.9.6_0.9.6c-2.woody.3_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-2.woody.3_ia64.deb -
Debian libssl0.9.6_0.9.6c-2.woody.3_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-2.woody.3_m68k.deb -
Debian libssl0.9.6_0.9.6c-2.woody.3_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-2.woody.3_mips.deb -
Debian libssl0.9.6_0.9.6c-2.woody.3_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-2.woody.3_mipsel.deb -
Debian libssl0.9.6_0.9.6c-2.woody.3_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-2.woody.3_powerpc.deb -
Debian libssl0.9.6_0.9.6c-2.woody.3_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-2.woody.3_s390.deb -
Debian libssl0.9.6_0.9.6c-2.woody.3_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.6_0.9 .6c-2.woody.3_sparc.deb -
Debian openssl_0.9.6c-0.potato.6_alpha.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 0.potato.6_alpha.deb -
Debian openssl_0.9.6c-0.potato.6_arm.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 0.potato.6_arm.deb -
Debian openssl_0.9.6c-0.potato.6_i386.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 0.potato.6_i386.deb -
Debian openssl_0.9.6c-0.potato.6_m68k.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 0.potato.6_m68k.deb -
Debian openssl_0.9.6c-0.potato.6_powerpc.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 0.potato.6_powerpc.deb -
Debian openssl_0.9.6c-0.potato.6_sparc.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 0.potato.6_sparc.deb -
Debian openssl_0.9.6c-2.woody.3_alpha.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 2.woody.3_alpha.deb -
Debian openssl_0.9.6c-2.woody.3_arm.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 2.woody.3_arm.deb -
Debian openssl_0.9.6c-2.woody.3_hppa.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 2.woody.3_hppa.deb -
Debian openssl_0.9.6c-2.woody.3_i386.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 2.woody.3_i386.deb -
Debian openssl_0.9.6c-2.woody.3_ia64.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 2.woody.3_ia64.deb -
Debian openssl_0.9.6c-2.woody.3_m68k.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 2.woody.3_m68k.deb -
Debian openssl_0.9.6c-2.woody.3_mips.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 2.woody.3_mips.deb -
Debian openssl_0.9.6c-2.woody.3_mipsel.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 2.woody.3_mipsel.deb -
Debian openssl_0.9.6c-2.woody.3_powerpc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 2.woody.3_powerpc.deb -
Debian openssl_0.9.6c-2.woody.3_s390.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 2.woody.3_s390.deb -
Debian openssl_0.9.6c-2.woody.3_sparc.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.6c- 2.woody.3_sparc.deb -
Debian ssleay_0.9.6c-0.potato.6_all.deb
Debian GNU/Linux 2.2 (potato)
http://security.debian.org/pool/updates/main/o/openssl/ssleay_0.9.6c-0 .potato.6_all.deb -
Debian ssleay_0.9.6c-2.woody.3_all.deb
Debian GNU/Linux 3.0 (woody)
http://security.debian.org/pool/updates/main/o/openssl/ssleay_0.9.6c-2 .woody.3_all.deb -
OpenSSL Project openssl-0.9.6j.tar.gz
http://www.openssl.org/source/openssl-0.9.6j.tar.gz
OpenSSL Project OpenSSL 0.9.6 e
-
OpenSSL Project openssl-0.9.6j.tar.gz
http://www.openssl.org/source/openssl-0.9.6j.tar.gz
OpenSSL Project OpenSSL 0.9.7 a
-
Mandrake libopenssl0.9.7-0.9.7a-1.1mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0.9.7-0.9.7a-1.1mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0.9.7-devel-0.9.7a-1.1mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0.9.7-devel-0.9.7a-1.1mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0.9.7-static-devel-0.9.7a-1.1mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake libopenssl0.9.7-static-devel-0.9.7a-1.1mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
Mandrake openssl-0.9.7a-1.1mdk.i586.rpm
Mandrake Linux 9.1
http://www.mandrakesecure.net/en/ftp.php -
Mandrake openssl-0.9.7a-1.1mdk.ppc.rpm
Mandrake Linux 9.1/PPC
http://www.mandrakesecure.net/en/ftp.php -
OpenSSL Project openssl-0.9.7b.tar.gz
http://www.openssl.org/source/openssl-0.9.7b.tar.gz
Covalent Enterprise Ready Server 2.1
-
Covalent ers-2.x-patch-20030404-files-hppa2.0-hp-hpux-11.x.tar.gz
http://www.covalent.net/download/patch2.0/ers-2.x-patch-20030404-files -hppa2.0-hp-hpux-11.x.tar.gz -
Covalent ers-2.x-patch-20030404-files-sparc-sun-solaris.tar.gz
http://www.covalent.net/download/patch2.0/ers-2.x-patch-20030404-files -sparc-sun-solaris.tar.gz -
Covalent ers-2.x-patch-20030404-files-x86-linux-glibc2.tar.gz
http://www.covalent.net/download/patch2.0/ers-2.x-patch-20030404-files -x86-linux-glibc2.tar.gz -
Covalent ers-2.x-patch-20030404-files-x86-winnt.exe
http://www.covalent.net/download/patch2.0/ers-2.x-patch-20030404-files -x86-winnt.exe
Redhat mgetty-sendfax-1.1.14-8.i386.rpm 2.2
-
Covalent ers-2.x-patch-20030404-files-hppa2.0-hp-hpux-11.x.tar.gz
http://www.covalent.net/download/patch2.0/ers-2.x-patch-20030404-files -hppa2.0-hp-hpux-11.x.tar.gz -
Covalent ers-2.x-patch-20030404-files-sparc-sun-solaris.tar.gz
http://www.covalent.net/download/patch2.0/ers-2.x-patch-20030404-files -sparc-sun-solaris.tar.gz -
Covalent ers-2.x-patch-20030404-files-x86-linux-glibc2.tar.gz
http://www.covalent.net/download/patch2.0/ers-2.x-patch-20030404-files -x86-linux-glibc2.tar.gz -
Covalent ers-2.x-patch-20030404-files-x86-winnt.exe
http://www.covalent.net/download/patch2.0/ers-2.x-patch-20030404-files -x86-winnt.exe
Covalent Enterprise Ready Server 2.3
-
Covalent ers-2.3-patch-20030404-files-sparc-sun-solaris.tar.gz
http://www.covalent.net/download/patch2.0/ers-2.3-patch-20030404-files -sparc-sun-solaris.tar.gz -
Covalent ers-2.3-patch-20030404-files-x86-linux-glibc2.tar.gz
http://www.covalent.net/download/patch2.0/ers-2.3-patch-20030404-files -x86-linux-glibc2.tar.gz
mod_ssl mod_ssl 2.8.14
-
Slackware mod_ssl-2.8.14_1.3.27-i386-1.tgz
ftp://ftp.slackware.com/pub/slackware/slackware-9.0/patches/packages/m od_ssl-2.8.14_1.3.27-i386-1.tgz
Stunnel Stunnel 3.12
-
Stunnel blinding-3.x_bri.patch
http://www.stunnel.org/patches/desc/blinding-3.x_bri.html
Stunnel Stunnel 3.14
-
Stunnel blinding-3.x_bri.patch
http://www.stunnel.org/patches/desc/blinding-3.x_bri.html
Stunnel Stunnel 3.15
-
Stunnel blinding-3.x_bri.patch
http://www.stunnel.org/patches/desc/blinding-3.x_bri.html
Stunnel Stunnel 3.16
-
Stunnel blinding-3.x_bri.patch
http://www.stunnel.org/patches/desc/blinding-3.x_bri.html
Stunnel Stunnel 3.19
-
Stunnel blinding-3.x_bri.patch
http://www.stunnel.org/patches/desc/blinding-3.x_bri.html
Stunnel Stunnel 3.8
-
Stunnel blinding-3.x_bri.patch
http://www.stunnel.org/patches/desc/blinding-3.x_bri.html
Stunnel Stunnel 4.0 4
-
Stunnel blinding-4.x_bri.patch
http://www.stunnel.org/patches/desc/blinding-4.x_bri.html
Stunnel Stunnel 4.0 2
-
Stunnel blinding-4.x_bri.patch
http://www.stunnel.org/patches/desc/blinding-4.x_bri.html
Stunnel Stunnel 4.0 1
-
Stunnel blinding-4.x_bri.patch
http://www.stunnel.org/patches/desc/blinding-4.x_bri.html
VanDyke SecureCRT 4.0.2
-
Van Dyke Technologies SecureCRT 4.0.5
http://www.vandyke.com/download/securecrt/index.html
VanDyke SecureCRT 4.0.3
-
Van Dyke Technologies SecureCRT 4.0.5
http://www.vandyke.com/download/securecrt/index.html
VanDyke SecureCRT 4.0.4
-
Van Dyke Technologies SecureCRT 4.0.5
http://www.vandyke.com/download/securecrt/index.html
SGI IRIX 6.5.19
References
OpenSSL Timing Attack RSA Private Key Information Disclosure Vulnerability
References:
References:
- Apple Security Updates (Apple)
- Crypto++ Library Product Page (Crypto++)
- OpenBSD 3.1 release errata & patch list (OpenBSD)
- OpenBSD 3.2 release errata & patch list (OpenBSD)
- Oracle 9i Application Server (Oracle)
- Oracle Support Metalink (Oracle)
- Product Updates, Patches, Security Alerts (Covalent)
- Remote Timing Attacks are Practical (David Brumley and Dan Boneh)
- SSL Update for CERT CA200326 and older SSL issues (Oracle)
- [Sorcerer-spells] OPENSSL-SORDCERER2003-03-21 (Michael Walton
) - Stunnel: RSA timing attacks / key discovery (Brian Hatch
) - Timing Attack on OpenSSL (Ben Laurie
) - Vulnerability in OpenSSL (David Brumley
)