HAProxy SSL and Heartbleed Exploit

2k Views Asked by At

With the openSSL Heartbleed exploit, I'm assuming that compiling HAproxy with the openSSL package will mean it is vulnerable. What would be the process to update? Update openSSL and recompile HAProxy?

1

There are 1 best solutions below

0
On

If you are using one of the affected OpenSSL versions (1.0.1 through 1.0.1f), update to version 1.0.1g where the exploit has been addressed.

http://www.kb.cert.org/vuls/id/720951