[prev in list] [next in list] [prev in thread] [next in thread] 

List:       linux-390
Subject:    Velocity zSSL not susceptible to Heartbleed bug
From:       Rick Troth <rickt () velocitysoftware ! com>
Date:       2014-04-11 20:29:38
Message-ID: 534850B2.80900 () velocitysoftware ! com
[Download RAW message or body]

Many Linux-on-z customers are hosting on VM and using our zVPS suite,
and some are also using zSSL for secure sockets.

Be assured that zSSL is *not vulnerable* to Heartbleed.

While "Heartbleed" is not a Linux problem, per se, many software
packages included with Linux or installed on Linux are linked against
OpenSSL. Specific releases of OpenSSL exhibit the leaky behavior in the
heartbeat function. Check with your distributors and other software
vendors and/or support organization to know if you are at risk.

Velocity zSSL is not based on OpenSSL.



--

Rick Troth
Senior Software Developer

Velocity Software Inc.
Mountain View, CA 94041
Main: (877) 964-8867
Direct: (614) 594-9768
rickt@velocitysoftware.com <mailto:rickt@velocitysoftware.com>




----------------------------------------------------------------------
For LINUX-390 subscribe / signoff / archive access instructions,
send email to LISTSERV@VM.MARIST.EDU with the message: INFO LINUX-390 or visit
http://www.marist.edu/htbin/wlvindex?LINUX-390
----------------------------------------------------------------------
For more information on Linux on System z, visit
http://wiki.linuxvm.org/
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic