RE: OpenSSL Vulnerability CVE-2014-0195

2014-06-23 Thread Venkataragavan Narayanaswamy
:13 PM To: openssl-users@openssl.org Subject: OpenSSL Vulnerability CVE-2014-0195 Hi All, We are currently using openssl 0.9.8 h version in one of our components. I would like to get some additional information about the vulnerability “DTLS invalid fragment vulnerability (CVE-2014-0195)”. I

Re: OpenSSL Vulnerability CVE-2014-0195

2014-06-23 Thread James
Hi, Do you use DTLS ? it is secure mode of UDP transfer. If you are not using DTLS then you are not vulnerable regards, James On Mon, Jun 9, 2014 at 6:43 PM, Jaya Nageswar jaya.nages...@gmail.com wrote: Hi All, We are currently using openssl 0.9.8 h version in one of our components. I

OpenSSL Vulnerability CVE-2014-0195

2014-06-09 Thread Jaya Nageswar
Hi All, We are currently using openssl 0.9.8 h version in one of our components. I would like to get some additional information about the vulnerability “DTLS invalid fragment vulnerability (CVE-2014-0195)”. I could get the information about all other vulnerabilities that are fixed in 0.9.8 za

OpenSSL Vulnerability CVE-2014-0195

2014-06-09 Thread Jaya Nageswar
Hi All, We are currently using openssl 0.9.8 h version in one of our components. I would like to get some additional information about the vulnerability “DTLS invalid fragment vulnerability (CVE-2014-0195)”. I could get the information about all other vulnerabilities that are fixed in 0.9.8 za