On Fri, Apr 11, 2014 at 7:10 PM, Ben Reser <b...@reser.org> wrote: > On 4/11/14, 12:52 PM, Nico Kadel-Garcia wrote: >> Do you have a pointer to that? It's a reasonable claim, I'd just not >> seen anything for verifying it or testing against HTTP sites that have >> HTTPS enabled, perhaps even with HTTPS only accessible behind a >> closed firewall for administrative user > > Apache HTTP Server can respond to multiple ports, some of which may be SSL > enabled and some of which that many not. The same processes are used for > either. As such even if you only have your Subversion repository running over > HTTP, if you have SSL enabled for some other purpose, your Subversion related > data in memory might be exposed.
- Recent Heartbleed OpenSSL bug may affect HTTPS Subversi... Nico Kadel-Garcia
- Re: Recent Heartbleed OpenSSL bug may affect HTTPS... Daniel Shahaf
- Re: Recent Heartbleed OpenSSL bug may affect H... Hannes Erven
- Re: Recent Heartbleed OpenSSL bug may affe... Nico Kadel-Garcia
- Re: Recent Heartbleed OpenSSL bug may ... Stefan Sperling
- Re: Recent Heartbleed OpenSSL bug may ... Ben Reser
- Re: Recent Heartbleed OpenSSL bug... Nico Kadel-Garcia
- Re: Recent Heartbleed OpenSSL... Nico Kadel-Garcia
- Re: Recent Heartbleed OpenSSL bug... Thorsten Schöning
- Re: Recent Heartbleed OpenSSL... Ben Reser
- Re: Recent Heartbleed Ope... Stefan Sperling
- Re: Recent Heartbleed Ope... Nico Kadel-Garcia
- Re: Recent Heartbleed Ope... Ben Reser
- Re: Recent Heartbleed Ope... Nico Kadel-Garcia
- Re: Recent Heartbleed OpenSSL bug may affect HTTPS... Ben Reser