Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 27 Jun 2002 15:58:11 -0700 (PDT)
From:      Julian Elischer <julian@elischer.org>
To:        Dag-Erling Smorgrav <des@FreeBSD.org>
Cc:        cvs-committers@FreeBSD.org, cvs-all@FreeBSD.org
Subject:   Re: cvs commit: src/crypto/openssh - Imported sources
Message-ID:  <Pine.BSF.4.21.0206271553400.69706-100000@InterJet.elischer.org>
In-Reply-To: <200206272231.g5RMVZAp039920@freefall.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help


On Thu, 27 Jun 2002, Dag-Erling Smorgrav wrote:

> des         2002/06/27 15:31:35 PDT
> 
>   src/crypto/openssh - Imported sources
>   Update of /home/ncvs/src/crypto/openssh
>   In directory freefall.freebsd.org:/c/tmp/cvs-serv39879
>   
>   Log Message:
>   Vendor import of OpenSSH 3.3p1.
>   
Why not 3.4 as that is what  they are trying to get everyone to 
go to?

they say 3.4 has a bunch of other potential security holes
closed after an audit...

p.s. do you believe what they say about 2.3.0 (as shipped in 4.4) (and
4.5?) NOT being vunlerable?

I wonder if any of the patches we applied since in the 4.4 branch have
MADE them vulnerble?

Julian



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe cvs-all" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.21.0206271553400.69706-100000>