OpenSSL vulnerable - pfSense?
-
Is it a correct assumption that today's mentioned serious OpenSSL vulnerability doesn't effect pfSense's OpenVPN capability?
http://www.us-cert.gov/current/index.html#openssl_releases_openssl_1_0
http://openssl.org/news/secadv_20101116.txtLooks to me that pfSense (1.2.3 at least) uses 0.9.8e, which seem not to be explicitly mentioned.
-
Yesterday it was confirmed on the OpenVPN mailing list that OpenVPN isn't vulnerable.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.