Errata ID | 225 |
---|---|
Date | 2014-10-22 |
Source package | univention-apache |
Fixed in version | 6.0.16-9.201.201410171308 |
Description | This update disables the insecure protocols SSL 2.0 and SSL 3.0 for the Apache Webserver. It is possible to override this by setting the UCR variable apache2/ssl/v2 and/or apache2/ssl/v3 to "true" before or after the update. |
Additional notes | |
CVE ID | CVE-2014-3566 |
UCS Bug number | #36173 |