LSWS 4.2.18 Released — Addresses POODLE SSLv3 Vulnerability

Status
Not open for further replies.

Michael

Well-Known Member
Staff member
#1
Dear LiteSpeeders,

We're proud to announce the release of LiteSpeed Web Server 4.2.18. LSWS 4.2.18 uses OpenSSL 1.0.1j, which addresses the POODLE SSLv3 vulnerability. LSWS 4.2.18 also disables SSLv3 by default as well as a few other minor improvements and bug fixes. (Read the release log.)

While most experts stress that this vulnerability is not as dangerous as Heartbleed or Shellshock, we recommend that all users upgrade to LSWS 4.2.18 in order to use this patched version of OpenSSL: /usr/local/lsws/admin/misc/lsup.sh -f -v 4.2.18

We will also be adding this version to autoupdate soon to allow users to update without using the command line.

Cheers,

Michael
 
Status
Not open for further replies.
Top