
ISC StormCast for Wednesday, November 2nd, 2022
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
00:00
Open SL 3.0.5 or 3.0.1 Is Still Not Updated on Ubuntu 2204
The Linux distributions usually do not update the version number when you're upgrading a package like open SSL. What typically happens is that they only backport the security patches to not run into any compatibility issues. So in short, not too much to worry about it. Definitely there are some exploit possibilities. But yesterday I talked for example about the Java Spring Security vulnerability. That's a bigger deal than this open SSL vulnerability today.
Transcript
Play full episode