Revision Date: | 2014-07-21 | Version: | 20 |
Title: | DSA-2141-3 apache2 -- backward compatibility option for SSL/TLS insecure |
Description: | DSA-2141-1 changed the behaviour of the openssl libraries in a server environment to only allow SSL/TLS renegotiation for clients that support the RFC5746 renegotiation extension. This update to apache2 adds the new SSLInsecureRenegotiation configuration option that allows to restore support for insecure clients. More information can be found in the file /usr/share/doc/apache2.2-common/NEWS.Debian.gz . |
Family: | unix | Class: | patch |
Status: | ACCEPTED | Reference(s): | CVE-2009-3555 CVE-2010-4180 DSA-2141-3
|
Platform(s): | Debian GNU/Linux 5.0
| Product(s): | apache2
|
Definition Synopsis |
Debian GNU/Linux 5.0 is installed AND Installed architecture is all
AND apache2 DPKG is earlier than 2.2.9-10+lenny9
|