[issue22638] ssl module: the SSLv3 protocol is vulnerable ("POODLE" attack)

Cory Benfield report at bugs.python.org
Wed Oct 15 10:30:18 CEST 2014


Cory Benfield added the comment:

> I don't believe it's in OpenSSL though.

There's an outstanding OpenSSL patch: http://marc.info/?l=openssl-dev&m=141333049205629&w=2

However, as Donald has pointed out, this is really only meaningful for servers and co-operating clients. It's not a useful panacea.

----------
nosy: +Lukasa

_______________________________________
Python tracker <report at bugs.python.org>
<http://bugs.python.org/issue22638>
_______________________________________


More information about the Python-bugs-list mailing list