[nsp-sec] ASN list with weak Debian/OpenSSL keys

Gabriel Iovino giovino at ren-isac.net
Fri Jan 23 11:51:49 EST 2009


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Florian Weimer wrote:
> The following hosts use SSL certificates on port 443/TCP which are
> affected by CVE-2008-0166 and should be considered compromised.

ack one more:

15318 | 132.206.28.137  | www.martlet.mcgill.ca

Gabe

- --
Gabriel Iovino
Principal Security Engineer, REN-ISAC
http://www.ren-isac.net
24x7 Watch Desk +1(317)278-6630
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iEYEARECAAYFAkl59aUACgkQwqygxIz+pTvBRQCfRX6sMBLvlLdGwvVuYS9FEzDW
q2QAoMntqbKI8r0plEWdb2Qo2dcVuORe
=X0Vy
-----END PGP SIGNATURE-----



More information about the nsp-security mailing list