OpenSSL CA证书绕过漏洞(CVE-2021-3450)
openssl-1.1.1k升级:
CentOS6:
# yum install gcc gcc-c++ zlib-devel -y 若安装,可跳过此步骤
# which openssl
# wget https://www.openssl.org/source/openssl-1.1.1k.tar.gz
# tar zxf openssl-1.1.1k.tar.gz
# cd openssl-1.1.1k
# ./config shared zlib
# echo $?
# make && make install
# echo $?
# mv /usr/bin/openssl /usr/bin/openssl.bak
# ln -s /usr/local/bin/openssl /usr/bin/
# find / -name libssl.so.1.1
# ln -s /usr/local/lib64/libssl.so.1.1 /usr/lib64/
# ln -s /usr/local/lib64/libcrypto.so.1.1 /usr/lib64/
# openssl version
CentOS7:
# yum install gcc gcc-c++ zlib-devel -y 若安装,可跳过此步骤
# which openssl
# wget https://www.openssl.org/source/openssl-1.1.1k.tar.gz
# tar zxf openssl-1.1.1k.tar.gz
# cd openssl-1.1.1k
# ./config shared zlib
# echo $?
# make && make install
# echo $?
# mv /usr/bin/openssl /usr/bin/openssl.bak
# ln -s /usr/local/bin/openssl /usr/bin/
# find / -name libssl.so.1.1
# ln -s /usr/local/lib64/libssl.so.1.1 /usr/lib64/
# ln -s /usr/local/lib64/libcrypto.so.1.1 /usr/lib64/
# openssl version
留言评论