From owner-freebsd-questions@FreeBSD.ORG Fri May 22 18:16:55 2009 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 07DA21065672 for ; Fri, 22 May 2009 18:16:55 +0000 (UTC) (envelope-from heli@mikestammer.com) Received: from mho-02-ewr.mailhop.org (mho-02-ewr.mailhop.org [204.13.248.72]) by mx1.freebsd.org (Postfix) with ESMTP id CD7878FC19 for ; Fri, 22 May 2009 18:16:54 +0000 (UTC) (envelope-from heli@mikestammer.com) Received: from vdsl-151-118-132-54.dnvr.qwest.net ([151.118.132.54] helo=mail.mikestammer.com) by mho-02-ewr.mailhop.org with esmtpsa (TLSv1:CAMELLIA256-SHA:256) (Exim 4.68) (envelope-from ) id 1M7ZIb-0005So-Vm for freebsd-questions@freebsd.org; Fri, 22 May 2009 18:16:54 +0000 Received: from [192.168.0.240] (unknown [192.168.0.1]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) (Authenticated sender: eric@mikestammer.com) by mail.mikestammer.com (Postfix) with ESMTPSA id 9801AB859 for ; Fri, 22 May 2009 12:16:52 -0600 (MDT) X-Mail-Handler: MailHop Outbound by DynDNS X-Originating-IP: 151.118.132.54 X-Report-Abuse-To: abuse@dyndns.com (see http://www.dyndns.com/services/mailhop/outbound_abuse.html for abuse reporting information) X-MHO-User: U2FsdGVkX18m1wcHZIcuR0M7c8JBT0UopX5Ufjg+VsM= Message-ID: <4A16EC20.6080407@mikestammer.com> Date: Fri, 22 May 2009 12:17:04 -0600 From: Eric User-Agent: Thunderbird 2.0.0.21 (Windows/20090302) MIME-Version: 1.0 To: freebsd-questions@freebsd.org References: <20090522073601.2db19607@scorpio> In-Reply-To: <20090522073601.2db19607@scorpio> Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 7bit Subject: Re: OpenSSH X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 22 May 2009 18:16:55 -0000 Jerry wrote: > I have the following version of SSH installed: > > OpenSSH_4.5p1 FreeBSD-20061110, OpenSSL 0.9.7e-p1 25 Oct 2004 > > I noticed an article regarding a flaw in OpenSSH below version 5.2. The > article is here: http://news.zdnet.com/2100-9595_22-303182.html > > Is this anything to worry about? Does the FreeBSD team have to update > the base version of SSH to correct this problem? > cant you install OpenSSH-portable or better yet, update your FreeBSD installation (which includes a new version of OpenSSH)?