From owner-freebsd-bugs Fri Apr 12 12:20:11 2002 Delivered-To: freebsd-bugs@hub.freebsd.org Received: from freefall.freebsd.org (freefall.FreeBSD.org [216.136.204.21]) by hub.freebsd.org (Postfix) with ESMTP id 0215B37B404 for ; Fri, 12 Apr 2002 12:20:01 -0700 (PDT) Received: (from gnats@localhost) by freefall.freebsd.org (8.11.6/8.11.6) id g3CJK0i66101; Fri, 12 Apr 2002 12:20:00 -0700 (PDT) (envelope-from gnats) Received: from freefall.freebsd.org (freefall.FreeBSD.org [216.136.204.21]) by hub.freebsd.org (Postfix) with ESMTP id B694C37B404 for ; Fri, 12 Apr 2002 12:18:48 -0700 (PDT) Received: (from nobody@localhost) by freefall.freebsd.org (8.11.6/8.11.6) id g3CJImb65951; Fri, 12 Apr 2002 12:18:48 -0700 (PDT) (envelope-from nobody) Message-Id: <200204121918.g3CJImb65951@freefall.freebsd.org> Date: Fri, 12 Apr 2002 12:18:48 -0700 (PDT) From: Alex V Eustrop To: freebsd-gnats-submit@FreeBSD.org X-Send-Pr-Version: www-1.0 Subject: bin/37026: FBSD4.5/4.4 sshd coredump, for unexisting login and opessh 3.x, (ssh v1) Sender: owner-freebsd-bugs@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org >Number: 37026 >Category: bin >Synopsis: FBSD4.5/4.4 sshd coredump, for unexisting login and opessh 3.x, (ssh v1) >Confidential: no >Severity: serious >Priority: medium >Responsible: freebsd-bugs >State: open >Quarter: >Keywords: >Date-Required: >Class: sw-bug >Submitter-Id: current-users >Arrival-Date: Fri Apr 12 12:20:00 PDT 2002 >Closed-Date: >Last-Modified: >Originator: Alex V Eustrop >Release: 4.5-RELEASE 4.4-RELENG >Organization: self-employed >Environment: FreeBSD pinockio.mave.ru 4.5-RELEASE FreeBSD 4.5-RELEASE #0: Mon Apr 8 01:34:28 MSD 2002 eustrop@pinockio.mave.ru:/usr/src/sys/compile/PINOCKIO.4.5 i386 >Description: When I am trying to access FBSD box with openssh 3.0/3.1, ssh protocol version 1 and invalid user name, sshd produce coredump It's wrong. >How-To-Repeat: 1) OpenSSH 3.x needed: # cd /usr/ports/security/openssh # make install && make clean 2) Try to access FBSD box as unexisting user: # /usr/local/bin/ssh -1 invalid_login@localhost # tail /var/log/messages; ls -al /sshd.core >Fix: unknown >Release-Note: >Audit-Trail: >Unformatted: To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-bugs" in the body of the message