<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: OpenSSL security bug in Security</title>
    <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125484#M14481</link>
    <description>&lt;P&gt;did you run this like &lt;CODE&gt;$SPLUNK_HOME/bin/splunk cmd openssl version&lt;/CODE&gt;? Otherwise you will probably get a response from your servers openSSL installation not the one from Splunk .....&lt;/P&gt;</description>
    <pubDate>Wed, 09 Apr 2014 12:31:01 GMT</pubDate>
    <dc:creator>MuS</dc:creator>
    <dc:date>2014-04-09T12:31:01Z</dc:date>
    <item>
      <title>OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125481#M14478</link>
      <description>&lt;P&gt;Splunk 6.0.2 is linked against OpenSSL 1.0.1e which has serious security flaw (CVE-2014-0160).&lt;BR /&gt;
When will be Splunk with fixed OpenSSL (1.0.1g) available?&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2014 08:13:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125481#M14478</guid>
      <dc:creator>mpavlas</dc:creator>
      <dc:date>2014-04-09T08:13:24Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125482#M14479</link>
      <description>&lt;P&gt;Hi mpavlas,&lt;/P&gt;

&lt;P&gt;Splunk is currently testing the fix, official statement on IRC #splunk channel:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;Welcome to #splunk! | Currently testing a fix for the Heartbleed OpenSSL issue
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;as soon as it is available you will hear about on IRC #splunk and their webpage....stay tuned&lt;/P&gt;

&lt;P&gt;cheers, MuS&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2014 08:20:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125482#M14479</guid>
      <dc:creator>MuS</dc:creator>
      <dc:date>2014-04-09T08:20:24Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125483#M14480</link>
      <description>&lt;P&gt;According to heartbleed.com:&lt;/P&gt;

&lt;P&gt;What versions of the OpenSSL are affected?&lt;/P&gt;

&lt;P&gt;Status of different versions:&lt;/P&gt;

&lt;P&gt;OpenSSL 1.0.1 through 1.0.1f (inclusive) are vulnerable&lt;BR /&gt;
OpenSSL 1.0.1g is NOT vulnerable&lt;BR /&gt;
OpenSSL 1.0.0 branch is NOT vulnerable&lt;BR /&gt;
OpenSSL 0.9.8 branch is NOT vulnerable&lt;BR /&gt;
Bug was introduced to OpenSSL in December 2011 and has been out in the wild since OpenSSL release 1.0.1 on 14th of March 2012. OpenSSL 1.0.1g released on 7th of April 2014 fixes the bug.&lt;/P&gt;

&lt;P&gt;Our production search head is running Splunk 6.0.  When I look at the command line:&lt;/P&gt;

&lt;P&gt;bin]$ openssl version&lt;BR /&gt;
OpenSSL 1.0.0-fips 29 Mar 2010&lt;/P&gt;

&lt;P&gt;Does this mean we are not affected by this?&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2014 12:09:59 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125483#M14480</guid>
      <dc:creator>millern4</dc:creator>
      <dc:date>2014-04-09T12:09:59Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125484#M14481</link>
      <description>&lt;P&gt;did you run this like &lt;CODE&gt;$SPLUNK_HOME/bin/splunk cmd openssl version&lt;/CODE&gt;? Otherwise you will probably get a response from your servers openSSL installation not the one from Splunk .....&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2014 12:31:01 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125484#M14481</guid>
      <dc:creator>MuS</dc:creator>
      <dc:date>2014-04-09T12:31:01Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125485#M14482</link>
      <description>&lt;P&gt;is there another command to run I've tried below with different variation but it never returns any ouput?&lt;/P&gt;

&lt;P&gt;$SPLUNK_HOME/bin/splunk cmd openssl version&lt;/P&gt;

&lt;P&gt;/]$ $SPLUNK_HOME/bin/splunk cmd openssl version&lt;BR /&gt;
-bash: /bin/splunk: No such file or directory&lt;/P&gt;

&lt;P&gt;Is there another way to run this command?&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2014 12:37:31 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125485#M14482</guid>
      <dc:creator>millern4</dc:creator>
      <dc:date>2014-04-09T12:37:31Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125486#M14483</link>
      <description>&lt;P&gt;if this is a default &lt;CODE&gt;*uix&lt;/CODE&gt; setup try:&lt;/P&gt;

&lt;P&gt;&lt;CODE&gt;/opt/splunk/bin/splunk cmd openssl version&lt;/CODE&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2014 12:40:47 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125486#M14483</guid>
      <dc:creator>MuS</dc:creator>
      <dc:date>2014-04-09T12:40:47Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125487#M14484</link>
      <description>&lt;P&gt;that was it, thank you.....indeed we are affected&lt;/P&gt;

&lt;P&gt;[xxxxxxxxxxxx /]$ cd /splunk/bin/&lt;BR /&gt;
[xxxxxxxxxx bin]$ pwd&lt;BR /&gt;
/splunk/bin&lt;BR /&gt;
[xxxxxxxxxx bin]$ ./splunk cmd openssl version&lt;BR /&gt;
OpenSSL 1.0.1e-fips 11 Feb 2013&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2014 12:47:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125487#M14484</guid>
      <dc:creator>millern4</dc:creator>
      <dc:date>2014-04-09T12:47:28Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125488#M14485</link>
      <description>&lt;P&gt;I am hoping that Splunk will send out a global communication (email) about this issue and include a set of versions that are affected and a timeline when they will be patched/updated.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2014 17:46:38 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125488#M14485</guid>
      <dc:creator>troywollenslege</dc:creator>
      <dc:date>2014-04-09T17:46:38Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125489#M14486</link>
      <description>&lt;P&gt;this is correct. we are working currently to test our fix, and will post it as soon as it meets our quality requirements.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2014 19:49:42 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125489#M14486</guid>
      <dc:creator>piebob</dc:creator>
      <dc:date>2014-04-09T19:49:42Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125490#M14487</link>
      <description>&lt;P&gt;Keep an eye on the splunk security portal at &lt;A href="http://www.splunk.com/page/securityportal"&gt;http://www.splunk.com/page/securityportal&lt;/A&gt;  -- which has an RSS feed you can subscribe to as well.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2014 19:50:09 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125490#M14487</guid>
      <dc:creator>dwaddle</dc:creator>
      <dc:date>2014-04-09T19:50:09Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125491#M14488</link>
      <description>&lt;P&gt;Hopefully to more than just IRC &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; &lt;/P&gt;

&lt;P&gt;Thanks for working on this quickly.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2014 19:51:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125491#M14488</guid>
      <dc:creator>troywollenslege</dc:creator>
      <dc:date>2014-04-09T19:51:40Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125492#M14489</link>
      <description>&lt;P&gt;Only 6.0.0-6.0.2 are affected: &lt;A href="http://answers.splunk.com/answers/131019/heartbleedopenssl-and-splunk/131069"&gt;http://answers.splunk.com/answers/131019/heartbleedopenssl-and-splunk/131069&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2014 21:49:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125492#M14489</guid>
      <dc:creator>martin_mueller</dc:creator>
      <dc:date>2014-04-09T21:49:45Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125493#M14490</link>
      <description>&lt;P&gt;A Splunk &lt;A href="http://blogs.splunk.com/2014/04/09/splunk-and-the-heartbleed-ssl-vulnerability/"&gt;blog entry&lt;/A&gt; has just been published confirming progress so far in addressing the problem.&lt;/P&gt;</description>
      <pubDate>Thu, 10 Apr 2014 02:41:55 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125493#M14490</guid>
      <dc:creator>grijhwani</dc:creator>
      <dc:date>2014-04-10T02:41:55Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125494#M14491</link>
      <description>&lt;P&gt;last updates : &lt;A href="http://blogs.splunk.com/2014/04/09/splunk-and-the-heartbleed-ssl-vulnerability/"&gt;http://blogs.splunk.com/2014/04/09/splunk-and-the-heartbleed-ssl-vulnerability/&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 10 Apr 2014 21:31:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125494#M14491</guid>
      <dc:creator>yannK</dc:creator>
      <dc:date>2014-04-10T21:31:23Z</dc:date>
    </item>
    <item>
      <title>Re: OpenSSL security bug</title>
      <link>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125495#M14492</link>
      <description>&lt;P&gt;Looks like there is an update available: &lt;A href="http://www.splunk.com/view/SP-CAAAMB3"&gt;http://www.splunk.com/view/SP-CAAAMB3&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 11 Apr 2014 13:45:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/OpenSSL-security-bug/m-p/125495#M14492</guid>
      <dc:creator>aelliott</dc:creator>
      <dc:date>2014-04-11T13:45:12Z</dc:date>
    </item>
  </channel>
</rss>

