[arch-general] Does openssl 1.0.1.g-1 close the heartbleed exploit?

Nowaker enwukaer at gmail.com
Fri Apr 25 04:15:13 EDT 2014


>    I was testing my boxes after updating to openssl 1.0.1.g-1 with heartbleed.c
> and I am still able to grab and decrypt ssl packets.

Most probably you didn't restart the services that link to openssl.

lsof +c 0 | grep -w DEL | awk '1 { print $1 ": " $NF }' | grep libssl | 
sort -u

https://mailman.archlinux.org/pipermail/arch-general/2014-April/035824.html

-- 
Kind regards,
Damian Nowak
StratusHost
www.AtlasHost.eu


More information about the arch-general mailing list