Project

General

Profile

Actions

Bug #2476

closed

Vunerable to CRIME SSL attack

Added by GDR over 12 years ago. Updated over 12 years ago.

Status:
Invalid
Priority:
Normal
Category:
-
Target version:
-
ASK QUESTIONS IN Forums:

Description

I've tested my instance of lighttpd 1.4.32 with this tool: https://www.ssllabs.com/ssltest/

The result of the test was that it's vunerable to CRIME attack against SSL. I've done extensive search in the internet, including lighttpd forums and issues, and haven't found a mention of CRIME attack.

Can this be fixed as a configuration change or does code need to be chagned?

#2

Updated by stbuehler over 12 years ago

  • Status changed from New to Invalid
Actions

Also available in: Atom