[ale] [Full-Disclosure] The lowdown on SSH vulnerability (fwd)

Christopher Fowler cfowler at outpostsentinel.com
Tue Sep 16 12:18:25 EDT 2003


Is this a problem in 3.7p1?

On Tue, Sep 16, 2003 at 12:14:03PM -0400, Jason Day wrote:
> I just did an apt-get update on Debian Woody, and there was a new
> security update for ssh.  Here is the entry from the changelog:
> 
> openssh (1:3.4p1-1.1) stable-security; urgency=high
>   
>   * NMU by the security team.
>   * Merge patch from OpenBSD to fix a security problem in buffer
>   * handling
>  
>  -- Wichert Akkerman <wakkerma at debian.org>  Tue, 16 Sep 2003 13:06:31 +0200
> 
> 
> Looks like more than just a rumor.  Patch those systems, people!
> -- 
> Jason Day                                       jasonday at
> http://jasonday.home.att.net                    worldnet dot att dot net
>  
> "Of course I'm paranoid, everyone is trying to kill me."
>     -- Weyoun-6, Star Trek: Deep Space 9
> _______________________________________________
> Ale mailing list
> Ale at ale.org
> http://www.ale.org/mailman/listinfo/ale



More information about the Ale mailing list