Re: [Savannah-hackers-public] Working through ssh upgrade throughout

2024-07-10 Thread Bob Proulx
Jing Luo wrote: > Bob, while you are at it, I think you might also want to check if sendmail > on vcs systemd & frontend is vulnerable to this (below). sendmail (actually > apt-listchanges??) sent an email to tell me that sendmail got a security > update (which I think is ironic). None of the Sava

Re: [Savannah-hackers-public] Working through ssh upgrade throughout

2024-07-02 Thread Jing Luo
On 2024-07-02 01:39, Bob Proulx wrote: Happy Monday Savannah! FYI: I am working through the ssh upgrades on the servers in order to mitigate the current news. regreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems CVE-2024-6387 https://www.qualys.com/2024/07/01/cve-2024-

Re: [Savannah-hackers-public] Working through ssh upgrade throughout

2024-07-01 Thread Bob Proulx
Bob Proulx wrote: > Happy Monday Savannah! > > FYI: I am working through the ssh upgrades on the servers in order to > mitigate the current news. > > regreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems > CVE-2024-6387 > https://www.qualys.com/2024/07/01/cve-2024-6387/regr

Re: [Savannah-hackers-public] Working through ssh upgrade throughout

2024-07-01 Thread Jim Meyering
On Mon, Jul 1, 2024, 09:39 Bob Proulx wrote: > Happy Monday Savannah! > > FYI: I am working through the ssh upgrades on the servers in order to > mitigate the current news. > > regreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems > CVE-2024-6387 > https://www.qualys.com/

[Savannah-hackers-public] Working through ssh upgrade throughout

2024-07-01 Thread Bob Proulx
Happy Monday Savannah! FYI: I am working through the ssh upgrades on the servers in order to mitigate the current news. regreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems CVE-2024-6387 https://www.qualys.com/2024/07/01/cve-2024-6387/regresshion.txt Bob