Skip site navigation (1)Skip section navigation (2)
Date:      28 Jun 2002 10:36:16 +0200
From:      Dag-Erling Smorgrav <des@ofug.org>
To:        Julian Elischer <julian@elischer.org>
Cc:        cvs-committers@FreeBSD.org, cvs-all@FreeBSD.org
Subject:   Re: cvs commit: src/crypto/openssh - Imported sources
Message-ID:  <xzpptybu7en.fsf@flood.ping.uio.no>
In-Reply-To: <Pine.BSF.4.21.0206271553400.69706-100000@InterJet.elischer.org>
References:  <Pine.BSF.4.21.0206271553400.69706-100000@InterJet.elischer.org>

next in thread | previous in thread | raw e-mail | index | archive | help
Julian Elischer <julian@elischer.org> writes:
> Why not 3.4 as that is what  they are trying to get everyone to 
> go to?

Patience.

> p.s. do you believe what they say about 2.3.0 (as shipped in 4.4) (and
> 4.5?) NOT being vunlerable?

...to this particular attack, yes.  Neither is the version of 2.9 we
have in 4.5 and 4.6 vulnerable.

> I wonder if any of the patches we applied since in the 4.4 branch have
> MADE them vulnerble?

No.

DES
-- 
Dag-Erling Smorgrav - des@ofug.org

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe cvs-all" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?xzpptybu7en.fsf>