Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Apache Web Server SSLCipherSuite Weak CipherSuite Renegotiation Weakness

The Apache Software Foundation has reported an issue that may occur when the SSLCipherSuite directive is used to upgrade a cipher suite. Particular sequences of per-directory renegotiations may cause this condition to occur, resulting in a weaker cipher suite being used in place of the upgraded one.







 

Privacy Statement
Copyright 2008, SecurityFocus