Re: Much ado about nothing.

From: Robert Watson (rwatson@FreeBSD.ORG)
Date: 06/26/02


Date: Wed, 26 Jun 2002 11:39:37 -0400 (EDT)
From: Robert Watson <rwatson@FreeBSD.ORG>
To: Benjamin Krueger <benjamin@seattleFenix.net>

FWIW, this does not in any way change our current strategy of getting
-STABLE forward onto the most recent version of OpenSSH and getting
privilege separation shipped for -STABLE. On the other hand, we're
clearly happy that the shipped version is not vulnerable to this
particular vulnerability.

Robert N M Watson FreeBSD Core Team, TrustedBSD Projects
robert@fledge.watson.org Network Associates Laboratories

On Wed, 26 Jun 2002, Robert Watson wrote:

> Yeah, I believe the version of OpenSSH shipped in -STABLE and past
> releases is not vulnerable, but we'll need to sit down and check
> carefully. People running -CURRENT (what few there are) should slide
> their trees forward, however.
>
> Robert N M Watson FreeBSD Core Team, TrustedBSD Projects
> robert@fledge.watson.org Network Associates Laboratories
>
> On Wed, 26 Jun 2002, Benjamin Krueger wrote:
>
> >
> > http://bvlive01.iss.net/issEn/delivery/xforce/alertdetail.jsp?oid=20584
> >
> > Regards,
> >
> > --
> > Benjamin Krueger
> >
> > "Life is far too important a thing ever to talk seriously about."
> > - Oscar Wilde (1854 - 1900)
> > ----------------------------------------------------------------
> > Send mail w/ subject 'send public key' or query for (0x251A4B18)
> > Fingerprint = A642 F299 C1C1 C828 F186 A851 CFF0 7711 251A 4B18
> >
> > To Unsubscribe: send mail to majordomo@FreeBSD.org
> > with "unsubscribe freebsd-security" in the body of the message
> >
>
>
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-security" in the body of the message
>

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Relevant Pages