Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Does pfSense use openssl 3.x at all?

    General pfSense Questions
    6
    8
    1.9k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      bribri007
      last edited by bribri007

      A critical fix for openssl 3.x is pending. I'm curious if anyone knows any functions within pfSense that are using openssl 3.x?
      https://mta.openssl.org/pipermail/openssl-announce/2022-October/000238.html

      johnpozJ 1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator @bribri007
        last edited by

        @bribri007 that would be highly unlikely since the current version I show is

        [22.05-RELEASE][admin@sg4860.local.lan]/root: openssl version
        OpenSSL 1.1.1n-freebsd  15 Mar 2022
        [22.05-RELEASE][admin@sg4860.local.lan]/root: 
        

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

        bingo600B M 2 Replies Last reply Reply Quote 2
        • bingo600B
          bingo600 @johnpoz
          last edited by bingo600

          @johnpoz
          Well they withdrew 1.1.1.r , along w. 3.0.6

          https://www.openssl.org/

          372d77ca-e4a2-4e5e-8dc9-a16971c66fa5-image.png

          Did someone "Zerorize" a pointer again ??? (HeartBleed) šŸ˜•

          New version should be released Nov-01 between 13 .. 17 UTC
          https://mta.openssl.org/pipermail/openssl-announce/2022-October/000238.html

          They are kind'a "URGING OUT LOUD"
          .

          197e2a0b-72ae-49a1-8dfe-c01763e603f2-image.png
          .

          /Bingo

          If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

          pfSense+ 23.05.1 (ZFS)

          QOTOM-Q355G4 Quad Lan.
          CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
          LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

          johnpozJ 1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator @bingo600
            last edited by

            @bingo600 yeah they seem to be having some trouble.. Guess good thing that we are bit behind on 1.1.1n

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.7.2, 24.11

            1 Reply Last reply Reply Quote 0
            • M
              MAW @johnpoz
              last edited by

              @johnpoz Just a FYI, I have Openssl 1.1.1l on three pfSense "2.6.0-RELEASE" systems that I manage/administor.

              1 Reply Last reply Reply Quote 0
              • D
                dmalick
                last edited by

                i have

                OpenSSL 1.1.1l-freebsd  24 Aug 2021
                [2.6.0-RELEASE][admin@pfsense.local.dev]/root: 
                
                1 Reply Last reply Reply Quote 1
                • jimpJ
                  jimp Rebel Alliance Developer Netgate
                  last edited by

                  pfSense software does not use OpenSSL 3.x on any version/edition, not even on the newest development snapshots.

                  Remember: Upvote with the šŸ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

                  Need help fast? Netgate Global Support!

                  Do not Chat/PM for help!

                  1 Reply Last reply Reply Quote 1
                  • bingo600B
                    bingo600
                    last edited by

                    From
                    https://thehackernews.com/2022/11/just-in-openssl-releases-patch-for-2.html

                    12ce405c-644d-42de-bab4-cdecd0e33864-image.png

                    Combined with what @jimp said above:

                    pfSense is not vulnerable at all

                    /Bingo

                    If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

                    pfSense+ 23.05.1 (ZFS)

                    QOTOM-Q355G4 Quad Lan.
                    CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                    LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

                    1 Reply Last reply Reply Quote 0
                    • M mr_snow referenced this topic on
                    • M mr_snow referenced this topic on
                    • M mr_snow referenced this topic on
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.