[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-security] openssl exploitable still?



> Hmm ok.. Can I do tihs against 1.3.20 (the version of apache I run)??

If you have apache built from src.rpm, my guess is no - ; if you are 
building it without src.rpm - it's too dangerous, cause you need to 
have all patches in place. 
What src.rpm are you using? The last one I found was C4 for RAQ4, and 
RPM is already C9, with some fixes.

I will (hopefully) have apache 1.3.29 built soon, maybe you should just 
wait? 

Dmitry