linux user group brescia

immagine del castello

Archivio della mailing list

[LugBS] Uh oh...

Michele Bonera michele a bonera.biz
Mer 5 Mar 2014 15:37:56 UTC
Il 04/03/2014 16:45, Enrico Colombini ha scritto:

> << Hundreds of open source packages, including the Red Hat, Ubuntu, and
> Debian distributions of Linux, are susceptible to attacks that
> circumvent the most widely used technology to prevent eavesdropping on
> the Internet, thanks to an extremely critical vulnerability in a widely
> used cryptographic code library.
>
> The bug in the GnuTLS library makes it trivial for attackers to bypass
> secure sockets layer (SSL) and Transport Layer Security (TLS)
> protections available on websites that depend on the open source package >>
>
> http://arstechnica.com/security/2014/03/critical-crypto-bug-leaves-linux-hundreds-of-apps-open-to-eavesdropping/

In Debian e Ubuntu c'è già l'aggiornamento di sicurezza. Sto facendo 
l'upgrade giusto ora...

http://changelogs.ubuntu.com/changelogs/pool/main/g/gnutls26/gnutls26_2.12.14-5ubuntu3.7/changelog

Bye
-- 
Michele Bonera
www.zipoware.com



Maggiori informazioni sulla lista Lug