Fedora 20 Security Update: openssl-1.0.1e-43.fc20

Resolved Bugs
1225994 – segfault in ssleay_rand_bytes due to locking regression
1223211 – CVE-2015-4000 LOGJAM: TLS connections which support export grade DHE key-exchange are vulnerable to MITM attacks
1224447 – CVE-2015-4000 openssl: LOGJAM: TLS connections which support export grade DHE key-exchange are vulnerable to MITM attacks [fedora-all]<br
Update mitigating the LOGJAM security vulnerability and fixing a regression in the RAND subsystem locking.

Leave a Reply