Thursday, June 5, 2014

Amazon says AWS infrastructure is impacted by Openssl CVE-2014-0224

Amazon issued a statement that the latest Openssl vulnerability reported by CVE-2014-0224 exposes the infrastructure to possible man-in-the-middle attack:

Amazon advisory

Amazon has updated the openssl package and suggested running "sudo yum update openssl". Openssl has issued their own advisory in the link below:-

Openssl advisory

No comments:

Post a Comment