[PetiteCloud] petitecloud and heartbleed

Aryeh Friedman aryeh.friedman at gmail.com
Tue Apr 8 16:16:16 PDT 2014


1. Heartbleed is a new vulnerability in OpenSSL (the most common SSL
backage) that allows an attacker to look at an arbitary 64k of RAMO
2. PetiteCloud does not use OpenSSL directly
3. The following programs that PetiteCloud uses have either known or
potential vulnerabilities:
    Tomcat (used for the web front end)
    SSH (used to remotely logged into instances)

-- 
Aryeh M. Friedman, Lead Developer, http://www.PetiteCloud.org
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.petitecloud.nyclocal.net/pipermail/petitecloud-general-petitecloud.nyclocal.net/attachments/20140408/07f65b5a/attachment-0001.htm>


More information about the petitecloud-general mailing list