[OpenWrt-Devel] CVE-2016-2108 - OpenSSL remote code execution

Ted Hess thess at kitschensync.net
Tue Aug 2 17:24:32 EDT 2016


Last time I looked - both OpenWrt(trunk & CC) and LEDE are using 1.0.2h - updated a month ago. This report is for releases prior to 
1.0.2c.

/ted

-----Original Message----- 
From: yanosz
Sent: Tuesday, August 02, 2016 3:46 PM
To: openwrt-devel at lists.openwrt.org
Subject: [OpenWrt-Devel] CVE-2016-2108 - OpenSSL remote code execution

Hello,

plz check CVE-2016-2108 - when will there be a fix in OpenWRT?
Please consider unpublishing the OpenSSL packages until you can provide
a fix.
_______________________________________________
openwrt-devel mailing list
openwrt-devel at lists.openwrt.org
https://lists.openwrt.org/cgi-bin/mailman/listinfo/openwrt-devel


More information about the openwrt-devel mailing list