Το πρόβλημα
On October 14, 2014, security experts alerted the general public to a flaw in an obsolete but still-used SSL protocol (SSLv3).
The “POODLE” (Padding Oracle On Downgraded Legacy Encryption) attack can force a connection to “fallback” to SSL 3.0, where it is then possible to steal cookies, which are small data files that enable persistent access to an online service. If stolen, a cookie could allow an attacker access to someone’s Web-based email account, for example.
It’s important to know that this flaw is most likely present in all servers and has nothing to do with the cPanel software. However, servers that currently function only because of SSL 3.0 fallback should be updated.
To accomplish this, please follow these steps. This does not appear to affect SSH and FTP services.
For Apache:
1) Go to WHM => Service Configuration => Apache Configuration => Include Editor => Pre Main Include.2) Select a version or All Versions.
3) Add the following in the text box that appears:
SSLHonorCipherOrder On
SSLProtocol -All +TLSv1 +TLSv1.1 +TLSv1.2
4) Press the Update button and rebuild your Apache configuration.
This will disable SSLv3.0 on your server running Apache.
For LiteSpeed:LiteSpeed has released an update to version 4.2.17. You can force a reinstall by running this command: