And if you don't trust version numbers, the libssl binary included with October 9th's Github Enterprise (2.14.7) has the same hash as the version released today (2.15.0).
Educated guess: Github Enterprise is vulnerable to the @NCCGroupplc libssl vulnerability patched today.https://twitter.com/kozmic/status/1052304111272677378 …
I'm curious what constitues "how we use the library" to make it not vulnerable. They use libssh, it hasn't been updated in a while, and it's used to power the SSH server.
-
-
Yes, peculiar. I guess one of us will have to run the thing and test. And it's not going to be me because I'm going to bed now. Looking forward to reading all about it in the morning.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.