Re: [SECURITY] [DSA 119-1] ssh channel bug

2002-03-09 Thread John Reinke
On Sat, 9 Mar 2002, NN_il_Confusionario wrote: > On Sat, Mar 09, 2002 at 12:29:27AM -0600, John Reinke wrote: > > the ones concerned. On my plain potato box, I get: > > SSH Version OpenSSH_2.3.0p1, protocol versions 1.5/2.0. > Quite probably you are vunlnerable to this and many previous > attacks.

Re: [SECURITY] [DSA 119-1] ssh channel bug

2002-03-09 Thread NN_il_Confusionario
On Sat, Mar 09, 2002 at 12:29:27AM -0600, John Reinke wrote: > the ones concerned. On my plain potato box, I get: > SSH Version OpenSSH_2.3.0p1, protocol versions 1.5/2.0. Quite probably you are vunlnerable to this and many previous attacks. Did you install the unofficial kde2 for potato? I tkink

Re: [SECURITY] [DSA 119-1] ssh channel bug

2002-03-09 Thread John Reinke
On Fri, 8 Mar 2002, Michael Stone wrote: > Since Debian 2.2 (potato) shipped with OpenSSH (the "ssh" package) > version 1.2.3, it is not vulnerable to this exploit. No fix is required > for Debian 2.2 (potato). According to the alert above, potato's version of OpenSSH is previous to the ones conc