Hi guys,
just wanted to inform you of a very critical security problem in Debian Etch's openssl package. Detailed information can be found in the
mailing list and in
my own blog (german)
In short:
Code:
# apt-get update //update packagelists
# apt-get upgrade -f //force ugrades
Then you should actually restart the system, so all relevant services will use the new openssl version.
Now go and update
EDIT: in response to rbtux's comment, you should checkout the following:
-
http://www.us.debian.org/security/key-rollover/
-
http://wiki.debian.org/SSLkeys