Date: Thu, 26 Oct 2000 11:22:14 -0700 From: Kris Kennaway <kris@citusc.usc.edu> To: Zvezdelin Vladov <zvezdi_v@yahoo.com> Cc: security-officer@FreeBSD.org, freebsd-questions@FreeBSD.org, freebsd-stable@FreeBSD.org Subject: Re: OpenSSH 2.1.x printf-style format string bugs! Message-ID: <20001026112214.A70478@citusc17.usc.edu> In-Reply-To: <20001026125049.29375.qmail@web805.mail.yahoo.com>; from zvezdi_v@yahoo.com on Thu, Oct 26, 2000 at 05:50:49AM -0700 References: <20001026125049.29375.qmail@web805.mail.yahoo.com>
next in thread | previous in thread | raw e-mail | index | archive | help
On Thu, Oct 26, 2000 at 05:50:49AM -0700, Zvezdelin Vladov wrote: > Dear Sirs, > Excuse me if I am wrong, > but on the RELENG_4 tag, > the openssh port seems to be the > old version, and as far as I can > see,( on the > http://www.freebsd.org/cgi/cvsweb.cgi/src/ > RELENG_4 tag) > And there are *some* security problems with it: Actually these aren't exploitable problems, as far as I could tell. I've been meaning to bring 2.2.0 into -stable but have been too busy. Thanks for the reminder - I'll do it this weekend. Kris To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20001026112214.A70478>