Re: OSVDB-166706

2017-11-13 Thread Salvatore Bonaccorso
Hi On Mon, Nov 13, 2017 at 09:19:45PM +0100, Bastian Blank wrote: > On Mon, Nov 13, 2017 at 12:57:48PM +, Adam Weremczuk wrote: > > Our quarterly PCI compliance scan has just challenged us on the following: > > https://vulners.com/nessus/OPENSSH_76.NASL > > Also referred to as OSVDB-166706. >

Re: OSVDB-166706

2017-11-13 Thread Bastian Blank
On Mon, Nov 13, 2017 at 12:57:48PM +, Adam Weremczuk wrote: > Our quarterly PCI compliance scan has just challenged us on the following: > https://vulners.com/nessus/OPENSSH_76.NASL > Also referred to as OSVDB-166706. The only security fix in OpenSSH 7.6 is: | * sftp-server(8): in read-only m

OSVDB-166706

2017-11-13 Thread Adam Weremczuk
Hello, Our quarterly PCI compliance scan has just challenged us on the following: https://vulners.com/nessus/OPENSSH_76.NASL Also referred to as OSVDB-166706. As it's quite new I can't find much information on it online in terms of potential hotfixes and workarounds. There is no openssh ver