Date: Fri, 23 Mar 2001 20:36:43 -0800 From: Kris Kennaway <kris@obsecurity.org> To: "Duwde (Fabio V. Dias)" <duwde@duwde.com.br> Cc: freebsd-stable@FreeBSD.ORG Subject: Re: sshd revealing too much stuff. Message-ID: <20010323203643.A28772@xor.obsecurity.org> In-Reply-To: <3ABC1CE3.F9486F2D@duwde.com.br>; from duwde@duwde.com.br on Sat, Mar 24, 2001 at 01:04:52AM -0300 References: <3ABC1CE3.F9486F2D@duwde.com.br>
next in thread | previous in thread | raw e-mail | index | archive | help
--mP3DRpeJDSE+ciuQ Content-Type: text/plain; charset=us-ascii Content-Disposition: inline On Sat, Mar 24, 2001 at 01:04:52AM -0300, Duwde (Fabio V. Dias) wrote: > Why this "green@FreeBSD.org 20010321" has been added ? To indicate that it's not stock OpenSSH 2.3.0 and therefore doesn't have the security problems which the stock OpenSSH 2.3.0 has. > With that, there is no need for OS Fingerprinting. > You've got the OS that the host is running AND > its sshd EXACT date of last modification by freebsd team. Sorry, but I find it difficult to consider this a problem..OS fingerprinting is trivial in so many ways. Kris --mP3DRpeJDSE+ciuQ Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.4 (FreeBSD) Comment: For info see http://www.gnupg.org iD8DBQE6vCRbWry0BWjoQKURAqfnAJ4vQU+rpykl21jNFxYSbvE/rNs4KgCgnjbV GcjDvHS8Ef05HmzNoqPr3e0= =80PU -----END PGP SIGNATURE----- --mP3DRpeJDSE+ciuQ-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-stable" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20010323203643.A28772>