Another bug on OpenSSL

Álvaro Castillo netsys at fedoraproject.org
Sun Jun 8 14:21:04 UTC 2014


Dear mailing list,

Few days was built an patch to solve an another vulnerability into
OpenSSL(http://bits.blogs.nytimes.com/2014/06/05/new-bug-found-in-widely-used-openssl-encryption/?_php=true&_type=blogs&_r=0).
Some sources talks about that's bug was discovered a long time ago but
does not fixed.

However, OpenBSD was created a fork called LibreSSL try to solve this
issues. Should Fedora to move LibreSSL (http://www.libressl.org/)? Or
still use OpenSSL and wait what's bug could be found today, or
tomorrow, or few months to go similar Adobe Flash bugs?


More information about the devel mailing list