OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Cy Schubert - ITSD Open Systems Group (Cy.Schubertuumail.gov.bc.ca)
Date: Sun Nov 18 2001 - 14:40:55 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    In message <4.3.2.7.2.20011118124921.041ea050localhost>, Brett Glass writes:
    > In a recent message to Bugtraq (quoted below), Dave Dittrich notes that
    > an SSH exploit has been specifically tuned to attack machines running
    > FreeBSD 4.x and certain versions of SSH. The hole apparently dates back
    > to the liberally licensed versions of SSH, and so is present in both
    > OpenSSH and SSH, Inc.'s SSH. Is 4.4-RELEASE vulnerable in the default
    > install if sshd is enabled? If so, is there a patch?

    This should answer your question:

    http://www.securityfocus.com/archive/82/222981

    Regards, Phone: (250)387-8437
    Cy Schubert Fax: (250)387-5766
    Team Leader, Sun/Alpha Team Email: Cy.Schubertosg.gov.bc.ca
    Open Systems Group, ITSD
    Ministry of Management Services
    Province of BC

    To Unsubscribe: send mail to majordomoFreeBSD.org
    with "unsubscribe freebsd-security" in the body of the message