Ubuntu Security Notice USN-2863-1
7th January, 2016
A security issue affects these releases of Ubuntu and its
- Ubuntu 12.04 LTS
OpenSSL could be made to expose sensitive information over the network.
– Secure Socket Layer (SSL) cryptographic library and tools
Karthikeyan Bhargavan and Gaetan Leurent discovered that OpenSSL
incorrectly allowed MD5 to be used for TLS 1.2 connections. If a remote
attacker were able to perform a man-in-the-middle attack, this flaw could
be exploited to view sensitive information.
The problem can be corrected by updating your system to the following
To update your system, please follow these instructions:
After a standard system update you need to reboot your computer to make
all the necessary changes.