Summary
The remote host is missing an update as announced
via advisory SSA:2003-141-05.
Solution
https://secure1.securityspace.com/smysecure/catid.html?in=SSA:2003-141-05
Insight
An upgrade for mod_ssl to version 2.8.14_1.3.27 is now available.
This version provides RSA blinding by default which prevents an extended timing analysis from revealing details of the secret key to an attacker. Note that this problem was already fixed within OpenSSL, so this is a 'double fix'. With this package, mod_ssl is secured even if OpenSSL is not.
We recommend sites using mod_ssl upgrade to this new package.