Click to See Complete Forum and Search --> : quick linux worm question


momo
09-17-2002, 10:33 PM
I have a machine at work that i updated openssl to redhat newest openssl package, I don't think I updated the mod_ssl package, am I still vulnerable to getting "slapped"?

TIA

Mike

sharth
09-17-2002, 10:38 PM
If a patch has been released and red hat added it to the up2date feature (check the redhat site) you shuold be fine.

momo
09-17-2002, 10:44 PM
well there is a mod_ssl patch but i didn't update that yet...just wondering if my machine is vulnerable since I only updated the openssl packages

thanks for the response

Lorithar
09-18-2002, 07:55 AM
Slapper will only infect your server if you are running mod_ssl ... if you aren't running a server on https (443) you aren't at risk.

I would however suggest updating the mod-ssl package anyway.