USN-884-1: OpenSSL vulnerability
14 January 2010
- openssl -
It was discovered that OpenSSL did not correctly free unused memory in
certain situations. A remote attacker could trigger this flaw in services
that used SSL, causing the service to use all available system memory,
leading to a denial of service.
The problem can be corrected by updating your system to the following package versions:
After a standard system upgrade you need to restart any applications
using OpenSSL, especially Apache, to effect the necessary changes.