RE: lug-bg: OpenSSH vulnerable
- Subject: RE: lug-bg: OpenSSH vulnerable
- From: georgi.sinapov@xxxxxxxxxx (Georgi Sinapov)
- Date: Tue, 25 Jun 2002 13:17:09 +0300
W linux.debian.security ima posting-i ot dnes w koito se twyrdi, 4e raboti s 2.2.20.
Pri men ne neraboti na Slackware 7.1 s 2.2.19-openwall4, openssl-0.9.6d, zlib-1.1.14, no w momenta prowerqwam dali ne e ot kernel patch-a, kato izbiwa s greshka:
Jun 25 13:12:52 tormentor sshd[5876]: fatal: mmap(65536): Invalid argument
Btw. ozna4awa li towa, 4e w 2.9.9p2 naprimer go nqma tozi exploit?
Best e-gards,
Georgi Sinapov
>
> Åòî êàêâî ïèøàò â Debian IRC êàíàëà:
> "Theo de Raadt has claimed that ssh 3.0 has a serious remote-root
> exploit, but refuses to reveal what it is. Theo recommends upgrading to
> 3.3 which makes this exploit less serious, however 3.3 doesn't work with
> 2.2 kernels, has problems with PAM on some setups, the compression
> doesn't work and someone at FreeBSD claims there is a different
> remote-root exploit in it."
============================================================================
A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers).
http://www.linux-bulgaria.org - Hosted by Internet Group Ltd. - Stara Zagora
To unsubscribe: http://www.linux-bulgaria.org/public/mail_list.html
============================================================================
|