Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 26 Oct 2000 11:22:14 -0700
From:      Kris Kennaway <kris@citusc.usc.edu>
To:        Zvezdelin Vladov <zvezdi_v@yahoo.com>
Cc:        security-officer@FreeBSD.org, freebsd-questions@FreeBSD.org, freebsd-stable@FreeBSD.org
Subject:   Re: OpenSSH 2.1.x printf-style format string bugs!
Message-ID:  <20001026112214.A70478@citusc17.usc.edu>
In-Reply-To: <20001026125049.29375.qmail@web805.mail.yahoo.com>; from zvezdi_v@yahoo.com on Thu, Oct 26, 2000 at 05:50:49AM -0700
References:  <20001026125049.29375.qmail@web805.mail.yahoo.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Thu, Oct 26, 2000 at 05:50:49AM -0700, Zvezdelin Vladov wrote:
> Dear Sirs,
> Excuse me if I am wrong,
> but on the RELENG_4 tag,
> the openssh port seems to be the
> old version, and as far as I can
> see,( on the 
> http://www.freebsd.org/cgi/cvsweb.cgi/src/
> RELENG_4 tag) 
> And there are *some* security problems with it:

Actually these aren't exploitable problems, as far as I could
tell. I've been meaning to bring 2.2.0 into -stable but have been too
busy. Thanks for the reminder - I'll do it this weekend.

Kris


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20001026112214.A70478>