I understand mod_spdy incorporates a statically-linked copy of openssl that is
vulnerable to the heartbleed attack, CVE-2014-0160. http://heartbleed.com/
I don't see any other bug reports about this issue. The static copy of openssl
should be updated ASAP.
Original issue reported on code.google.com by lukehu...@google.com on 8 Apr 2014 at 11:46
Original issue reported on code.google.com by
lukehu...@google.com
on 8 Apr 2014 at 11:46