Re: Fwd: OpenSSH channel_lookup() off by one exploit

From: Erick Mechler (emechler@techometer.net)
Date: 03/29/02


Date: Fri, 29 Mar 2002 07:16:11 -0800
From: Erick Mechler <emechler@techometer.net>
To: Holt Grendal <holtor@yahoo.com>


:: Has this been fixed in freebsd?

Yup, nearly a month ago. The advisory is here:

  ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02%3A13.openssh.asc

You can find this, and other advisories, on the FreeBSD Security page

  http://www.freebsd.org/security/#adv

--Erick

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Relevant Pages

  • RE: FreeBSD Security Advisory FreeBSD-SA-06:23.openssl
    ... The description of CVE-2006-3738 in the advisory from openssl.org ... Subject: FreeBSD Security Advisory FreeBSD-SA-06:23.openssl ... FreeBSD includes software from the OpenSSL Project. ... Applications which perform public key operations using untrusted keys may be ...
    (FreeBSD-Security)
  • FreeBSD Security Advisory FreeBSD-SA-05:18.zlib
    ... For general information regarding FreeBSD Security Advisories, ... including descriptions of the fields above, security branches, and the ... The issue discussed in this advisory is distinct from the ... A fixed-size buffer is used in the decompression of data streams. ...
    (FreeBSD-Security)
  • [FreeBSD-Announce] FreeBSD Security Advisory FreeBSD-SA-05:18.zlib
    ... For general information regarding FreeBSD Security Advisories, ... including descriptions of the fields above, security branches, and the ... The issue discussed in this advisory is distinct from the ... A fixed-size buffer is used in the decompression of data streams. ...
    (freebsd-announce)
  • Buffer overflow in /usr/games/strfile
    ... Below is an advisory for a vulnerable buffer in the /usr/games/strfile binary ... FreeBSD /usr/games/strfile buffer overflow ... FreeBSD /usr/games/strfile contains a vulnerable buffer which can ...
    (FreeBSD-Security)
  • FreeBSD Security Advisory FreeBSD-SA-05:18.zlib
    ... For general information regarding FreeBSD Security Advisories, ... including descriptions of the fields above, security branches, and the ... The issue discussed in this advisory is distinct from the ... A fixed-size buffer is used in the decompression of data streams. ...
    (Bugtraq)