Re: lug-bg: OpenSSH vulnerable
- Subject: Re: lug-bg: OpenSSH vulnerable
- From: danchev@xxxxxxxxx (George Danchev)
- Date: Tue, 25 Jun 2002 13:59:47 +0300
On Tuesday 25 June 2002 13:17, Georgi Sinapov wrote:
> W linux.debian.security ima posting-i ot dnes w koito se twyrdi, 4e raboti
> s 2.2.20.
>
> Pri men ne neraboti na Slackware 7.1 s 2.2.19-openwall4, openssl-0.9.6d,
> zlib-1.1.14, no w momenta prowerqwam dali ne e ot kernel patch-a, kato
> izbiwa s greshka:
>
> Jun 25 13:12:52 tormentor sshd[5876]: fatal: mmap(65536): Invalid argument
õì, ìîæå äà å îò glibc 2.1.3, ïðè äåáèàí èñêà 2.2.4 è mmap âåðîÿòíî å ñ
ïðîìåíåíè àðãóìåíòè ? ïðî÷åòè âíèìàòåëíî äîêóìåíòàöèÿòà â ñîðñà íà ïàêåòà, è
äàíî íàìåðèø òîâà äåòî ñå èñêà within slackware. îïèòàé è ñ åäèí vanilla
2.2.19, íî âå÷å íÿêîé êàçà ÷å ñ íåãî ðàáîòè.
> Btw. ozna4awa li towa, 4e w 2.9.9p2 naprimer go nqma tozi exploit?
íå å ñèãóðíî, ñàìî OpenSSH team çíàÿò çà êàêâî èäå ðå÷, è çà ñåãà ìúë÷àò, èëè
ïîñâåùàâàò â òàéíàòà ñàìî trusted developers, êîèòî äà ïîìîãíàò çà ðåøàâàíåòî
íà ïðîáëåìà, òàêà ÷å êàòî ãî îáÿâÿò îôèöèàëíî, äàíî âå÷å èìà äà èñòèíñêè fix,
à íå ïðîñòî íàìàëÿâàíå íà ðèñêà ÷ðåç config-a, e.g. ïî-ìàëêî êîä äà âúðâè ñ
root ïðèâèëåãèè.
--
Greets,
fr33zb1
============================================================================
A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers).
http://www.linux-bulgaria.org - Hosted by Internet Group Ltd. - Stara Zagora
To unsubscribe: http://www.linux-bulgaria.org/public/mail_list.html
============================================================================
|