Hello users, CVE-2009-0789 seems to be applicable to openssl 0.9.7l based on the affected versions mentioned. We are using Apache 1.3.34 + openssl 0.9.7l.The solution given is to upgrade to 0.9.8k,but Apache 1.3x with openssl 0.9.8 is not working together. We thought of merging the code changes done as part of this vulnerability to openssl 0.9.7l source code, but not able to see code changes anywhere. Any place where we can see the code changes for this vulnerability? Please suggest.
Thanks and Regards, Prathima. ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager majord...@openssl.org