Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 30 Oct 2003 10:22:06 -0800
From:      Kris Kennaway <kris@obsecurity.org>
To:        Wayne Pascoe <freebsd-questions@penguinpowered.org>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: openssh in 4.9
Message-ID:  <20031030182206.GC29685@rot13.obsecurity.org>
In-Reply-To: <20031030141926.GB71952@marvin.penguinpowered.org>
References:  <20031030141926.GB71952@marvin.penguinpowered.org>

next in thread | previous in thread | raw e-mail | index | archive | help

--uh9ZiVrAOUUm9fzH
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Thu, Oct 30, 2003 at 02:19:26PM +0000, Wayne Pascoe wrote:
> Hi all,
>=20
> I just upgraded 2 servers to 4.9. On both of them, since the upgrade,
> ssh's version is being reported as=20
>=20
> -bash-2.05b$ ssh -V
> OpenSSH_3.5p1 FreeBSD-20030924, SSH protocols 1.5/2.0, OpenSSL
> 0x0090703f
>=20
> I thought that anything prior to 3.7p1 was vulnerable ? Is this the
> correct version that I should be expecting, or do I have a problem ?=20

Please read the security advisory.

Kris

--uh9ZiVrAOUUm9fzH
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (FreeBSD)

iD8DBQE/oVbNWry0BWjoQKURAv+/AKDrQbfGe7oxhd5c+RB16hznbs4JqgCgq4kS
flm6Dvn1jJ20RG89Jol9+nw=
=7Fq3
-----END PGP SIGNATURE-----

--uh9ZiVrAOUUm9fzH--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20031030182206.GC29685>