[ Thanks to steve
hill for this link. ]
“Despite having an aversion to configuring and maintaining
security and crypto software, I accepted that I had to update my
system in response to the recent big Debian security problem. If I
can do it, you can do it. Below are my notes, but keep in mind that
my security rank is somewhere between ignorant and
uninterested…“To fix the OpenSSL problem, you have to do two things. First
you have to upgrade the package “libssl0.9.8″. Then you have to
check your system for weak keys and regenerate them if there are
any…”