Skip to main content
Participant
August 18, 2014
Question

OpenSSL vulnerability 6 Aug 2014

  • August 18, 2014
  • 1 reply
  • 899 views

Is RTMPS affected by following vulnerabilitys?

I use AMS 5.0.3 on CentOS 6.4.

CVE-2014-3508,CVE-2014-5139,CVE-2014-3509,CVE-2014-3505,

CVE-2014-3506,CVE-2014-3507,CVE-2014-3510,CVE-2014-3511,

CVE-2014-3512

Thanks.

    This topic has been closed for replies.

    1 reply

    Inspiring
    August 18, 2014

    Hi

    AMS 5.0.6 has the OpenSSL fix.

    Please get it from updaters page.

    http://www.adobe.com/support/flashmediaserver/downloads_updaters.html

    Release notes are here

    Adobe - Flash Media Server : Release Notes

    Participant
    August 18, 2014

    Thank you for your reply.

    I read Release notes of AMS 5.0.6.

    "Bundled OpenSSL version has been updated to openssl-1.0.1h."

    Isn't openssl-1.0.1h affected by following vulnerabilitys?

    CVE-2014-3508,CVE-2014-5139,CVE-2014-3509,CVE-2014-3505,

    CVE-2014-3506,CVE-2014-3507,CVE-2014-3510,CVE-2014-3511,

    CVE-2014-3512

    Thanks.

    Inspiring
    August 18, 2014