From owner-freebsd-questions Thu Mar 7 9: 1:26 2002 Delivered-To: freebsd-questions@freebsd.org Received: from roc-66-66-72-6.rochester.rr.com (roc-66-66-72-6.rochester.rr.com [66.66.72.6]) by hub.freebsd.org (Postfix) with ESMTP id A3FC537B47C for ; Thu, 7 Mar 2002 09:00:49 -0800 (PST) Received: by roc-66-66-72-6.rochester.rr.com (Postfix, from userid 1000) id 6FB4E901A1D; Thu, 7 Mar 2002 12:00:07 -0500 (EST) Date: Thu, 7 Mar 2002 12:00:04 -0500 From: mpd To: Eric Parusel Cc: questions@freebsd.org Subject: Re: OpenSSH root hole - What version of FreeBSD does it affect? Message-ID: <20020307120004.A34187@rochester.rr.com> References: <012f01c1c5f7$ee24fd00$5e4e5318@cns> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.2.5.1i In-Reply-To: <012f01c1c5f7$ee24fd00$5e4e5318@cns>; from lists@globalrelay.net on Thu, Mar 07, 2002 at 08:48:38AM -0800 Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG On Thu, Mar 07, 2002 at 08:48:38AM -0800, Eric Parusel wrote: > >From the advisory: > "Affects: FreeBSD 4.4-RELEASE, 4.5-RELEASE > FreeBSD 4.5-STABLE prior to the correction date > openssh port prior to openssh-3.0.2_1 > openssh-portable port prior to > openssh-portable-3.0.2p1_1" > > Does this affect FreeBSD's releng_4_3?? Just wondering why there's > no mention of it at all... It's the version of OpenSSH that's important. What version is installed on that machine? Unless you've upgraded it recently, I'd wager it's vulnerable. > > Thanks, > > Eric > mike -- ___________________________________________________________ "POKEY DO YOU WANT SOME ICE CREAM???? - Little Girl from "WORKS LIKE A CHARM" To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message