• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Does pfSense use openssl 3.x at all?

General pfSense Questions
6
8
1.9k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • B
    bribri007
    last edited by bribri007 Oct 31, 2022, 3:09 PM Oct 31, 2022, 3:05 PM

    A critical fix for openssl 3.x is pending. I'm curious if anyone knows any functions within pfSense that are using openssl 3.x?
    https://mta.openssl.org/pipermail/openssl-announce/2022-October/000238.html

    J 1 Reply Last reply Oct 31, 2022, 3:08 PM Reply Quote 0
    • J
      johnpoz LAYER 8 Global Moderator @bribri007
      last edited by Oct 31, 2022, 3:08 PM

      @bribri007 that would be highly unlikely since the current version I show is

      [22.05-RELEASE][admin@sg4860.local.lan]/root: openssl version
      OpenSSL 1.1.1n-freebsd  15 Mar 2022
      [22.05-RELEASE][admin@sg4860.local.lan]/root: 
      

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.7.2, 24.11

      B M 2 Replies Last reply Nov 1, 2022, 12:13 PM Reply Quote 2
      • B
        bingo600 @johnpoz
        last edited by bingo600 Nov 1, 2022, 12:38 PM Nov 1, 2022, 12:13 PM

        @johnpoz
        Well they withdrew 1.1.1.r , along w. 3.0.6

        https://www.openssl.org/

        🔒 Log in to view

        Did someone "Zerorize" a pointer again ??? (HeartBleed) 😕

        New version should be released Nov-01 between 13 .. 17 UTC
        https://mta.openssl.org/pipermail/openssl-announce/2022-October/000238.html

        They are kind'a "URGING OUT LOUD"
        .

        🔒 Log in to view
        .

        /Bingo

        If you find my answer useful - Please give the post a 👍 - "thumbs up"

        pfSense+ 23.05.1 (ZFS)

        QOTOM-Q355G4 Quad Lan.
        CPU  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
        LAN  : 4 x Intel 211, Disk  : 240G SAMSUNG MZ7L3240HCHQ SSD

        J 1 Reply Last reply Nov 1, 2022, 12:17 PM Reply Quote 0
        • J
          johnpoz LAYER 8 Global Moderator @bingo600
          last edited by Nov 1, 2022, 12:17 PM

          @bingo600 yeah they seem to be having some trouble.. Guess good thing that we are bit behind on 1.1.1n

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.7.2, 24.11

          1 Reply Last reply Reply Quote 0
          • M
            MAW @johnpoz
            last edited by Nov 2, 2022, 6:37 AM

            @johnpoz Just a FYI, I have Openssl 1.1.1l on three pfSense "2.6.0-RELEASE" systems that I manage/administor.

            1 Reply Last reply Reply Quote 0
            • D
              dmalick
              last edited by Nov 2, 2022, 7:50 AM

              i have

              OpenSSL 1.1.1l-freebsd  24 Aug 2021
              [2.6.0-RELEASE][admin@pfsense.local.dev]/root: 
              
              1 Reply Last reply Reply Quote 1
              • J
                jimp Rebel Alliance Developer Netgate
                last edited by Nov 2, 2022, 12:26 PM

                pfSense software does not use OpenSSL 3.x on any version/edition, not even on the newest development snapshots.

                Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                Need help fast? Netgate Global Support!

                Do not Chat/PM for help!

                1 Reply Last reply Reply Quote 1
                • B
                  bingo600
                  last edited by Nov 2, 2022, 2:40 PM

                  From
                  https://thehackernews.com/2022/11/just-in-openssl-releases-patch-for-2.html

                  🔒 Log in to view

                  Combined with what @jimp said above:

                  pfSense is not vulnerable at all

                  /Bingo

                  If you find my answer useful - Please give the post a 👍 - "thumbs up"

                  pfSense+ 23.05.1 (ZFS)

                  QOTOM-Q355G4 Quad Lan.
                  CPU  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                  LAN  : 4 x Intel 211, Disk  : 240G SAMSUNG MZ7L3240HCHQ SSD

                  1 Reply Last reply Reply Quote 0
                  • M mr_snow referenced this topic on Nov 7, 2022, 11:44 AM
                  • M mr_snow referenced this topic on Nov 7, 2022, 11:46 AM
                  • M mr_snow referenced this topic on Nov 7, 2022, 12:06 PM
                  6 out of 8
                  • First post
                    6/8
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.