OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Remote root vuln in lsh 1.4.x

From: Haggis (haggislearningshophull.co.uk)
Date: Fri Sep 19 2003 - 08:01:24 CDT


After reading about a theoretical remote hole in OpenSSH and many detractors
smugly saying that they weren't vulnerable because they run LSH (a free
alternative), I'd like to present a working remote root exploit against LSH
version 1.4.x.

Enjoy.