[Bug 230174] Re: [Gutsy] ssh installation results in COMPROMISED keys

2008-05-14 Thread Chris K. Jester-Young
First, because you have a custom non-gutsy libssl0.9.8, I think this establishes the non-bugness of this report. I would suggest to the owner of this bug ticket that this be turned into a help request instead. In response to the rest of the message: the 5ubuntu3.1 version no longer exists in the s

[Bug 230174] Re: [Gutsy] ssh installation results in COMPROMISED keys

2008-05-14 Thread Chris K. Jester-Young
What version of libssl0.9.8 do you have installed? If older than 0.9.8e- 5ubuntu3.2 (such as if you have 0.9.8e-5ubuntu3) you will continue to generate bad keys. This is irrespective of what version of openssh- server you have, which only adds checks for vulnerable keys, and does not affect key gen