HomeSecurityOpenSSL vulnerabilities found in Ubuntu

OpenSSL vulnerabilities found in Ubuntu

More-OpenSSL-Vulnerabilities-Found-Ubuntu-OSes-Get-Patched

Canonical issued a security advisory yesterday, informing users about OpenSSL vulnerabilities found in Ubuntu 14.04 LTS, Ubuntu 13.10, Ubuntu 12.04 LTS, and Ubuntu 10.04 LTS.

According to the company's official announcement, researcher Jüri Aedla discovered that OpenSSL incorrectly handles invalid DTLS fragments. A remote attacker could exploit this vulnerability (DTLS invalid fragment vulnerability) to cause OpenSSL to crash, leading to a denial of service, or arbitrary code execution.

Researcher Imre Rad discovered another DTLS recursion vulnerability, which could also lead to an OpenSSL crash and denial of service.

These are just some of the security holes found in OpenSSL. For a more detailed description of the vulnerabilities, you can see Canonical's security bulletin

Users should immediately upgrade their system to fix the vulnerabilities, following the following instructions:

https://wiki.ubuntu.com/Security/Upgrades

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS