Hello users,

CVE-2009-0789 seems to be applicable to openssl 0.9.7l based on the affected
versions mentioned. We are using Apache 1.3.34 + openssl 0.9.7l.The solution
given is to upgrade to 0.9.8k,but Apache 1.3x with openssl 0.9.8 is not
working together. We thought of merging the code changes done as part of
this vulnerability to openssl 0.9.7l source code, but not able to see code
changes anywhere.
Any place where we can see the code changes for this vulnerability?
Please suggest.

Thanks and Regards,
Prathima.

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           majord...@openssl.org

Reply via email to