OpenSSL Security Advisory – Two moderate severity security flaws have been fixed in OpenSSL 0.9.8h. Testing using the Codenomicon TLS test suite discovered a flaw in the handling of server name extension data in OpenSSL 0.9.8f and OpenSSL 0.9.8g. Testing using the Codenomicon TLS test suite discovered a flaw if the ‘Server Key exchange message’ is omitted from a TLS handshake in OpenSSL 0.9.8f and OpenSSL 0.9.8g.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/66751/secadv_20080528.txt
Source: https://packetstormsecurity.com/files/66751/secadv_20080528.txt.html

