31 Jul
2002
31 Jul
'02
11:59
Roman Drahtmueller wrote:
Content of this advisory: 1) security vulnerability resolved: openssl problem description, discussion, solution and upgrade information
Just one question: We still use SuSE EmailServer-2 which uses sslwrap to enable imaps and pop3s on the server. sslwrap doesn't seem to be dynamically linked to OpenSSL: ldd /usr/sbin/sslwrap libc.so.6 => /lib/libc.so.6 (0x40018000) /lib/ld-linux.so.2 => /lib/ld-linux.so.2 (0x40000000) Is this a statically linked binary or does sslwrap use its own SSL-Code, meaning that it's not vulnerable? Ralph