Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 26 Jun 2002 08:31:46 -0500 (CDT)
From:      admin <admin@crimelords.org>
To:        freebsd-security@FreeBSD.ORG
Subject:   OpenSSH vulnerability
Message-ID:  <Pine.BSF.4.44.0206260830230.61072-100000@crimelords.org>

next in thread | raw e-mail | index | archive | help

I'm on this list, but haven't seen ANY email the past few days, so I'm
going to post this to see if I even get it.  I'm sure I was accidently
removed or something, and will figure that out shortly.

http://www.openssh.com

A yet undisclosed vulnerability exists in OpenSSH. You are strongly
encouraged to upgrade immediately to OpenSSH 3.3 with the
UsePrivilegeSeparation option enabled. Privilege Separation blocks this
problem. Keep an eye out for the upcoming OpenSSH 3.4 release on Monday
that fixes the vulnerability itself.

ports updated yet?

-emacs


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.44.0206260830230.61072-100000>