[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-2141-3 apache2 -- backward compatibility option for SSL/TLS insecure

ID: oval:org.secpod.oval:def:600564Date: (C)2011-09-14   (M)2024-02-19
Class: PATCHFamily: unix




DSA-2141-1 changed the behaviour of the openssl libraries in a server environment to only allow SSL/TLS renegotiation for clients that support the RFC5746 renegotiation extension. This update to apache2 adds the new SSLInsecureRenegotiation configuration option that allows to restore support for insecure clients. More information can be found in the file /usr/share/doc/apache2.2-common/NEWS.Debian.gz .

Platform:
Debian 5.0
Product:
apache2
Reference:
DSA-2141-3
CVE-2009-3555
CVE    1
CVE-2009-3555
CPE    1
cpe:/o:debian:debian_linux:5.0

© SecPod Technologies