On Fri, 20 Jul 2001, Stephanie Thomas wrote: > PLATFORMS IMPACTED: Red Hat Linux 6.1 thru 7.1 RedHat Linux 7.0 ships OpenSSH 2.2.1 (7.0). RedHat Linux 7.1 ships OpenSSH 2.5.2. Previous versions shipped SSH 1.2.xx, which, if I understood, are not vulnerable. You are vulnerable only if you have installed SSH.com SSH 3.0.0 by hand, but then, it is not RedHat fault. -- _____________________________________________________ Michal Zalewski [[EMAIL PROTECTED]] [security] [http://lcamtuf.coredump.cx] <=-=> bash$ :(){ :|:&};: =-=> Did you know that clones never use mirrors? <=-=
- URGENT SECURITY ADVISORY FOR SSH SECURE SHELL 3.0... Stephanie Thomas
- Re: URGENT SECURITY ADVISORY FOR SSH SECURE ... Dan Kaminsky
- Re: URGENT SECURITY ADVISORY FOR SSH SEC... Dale Southard
- Re: URGENT SECURITY ADVISORY FOR SSH... Nate Eldredge
- Re: URGENT SECURITY ADVISORY FOR SSH SEC... Brandon S. Allbery KF8NH
- Re: URGENT SECURITY ADVISORY FOR SSH SECURE ... Michal Zalewski
- Re: URGENT SECURITY ADVISORY FOR SSH SEC... j
- Re: URGENT SECURITY ADVISORY FOR SSH SEC... Trond Eivind Glomsr�d
- Re: URGENT SECURITY ADVISORY FOR SSH SECURE ... Jen B.
- Re: URGENT SECURITY ADVISORY FOR SSH SECURE ... Marcus Meissner
- Re: URGENT SECURITY ADVISORY FOR SSH SECURE ... Florian Weimer
- Re: URGENT SECURITY ADVISORY FOR SSH SEC... Thomas Roessler
- Re: URGENT SECURITY ADVISORY FOR SSH... Lucian Hudin
- RE: URGENT SECURITY ADVISORY FOR SSH... Sports
- Re: URGENT SECURITY ADVISORY FOR... Seth Arnold
- Re: URGENT SECURITY ADVISORY FOR SSH SECURE ... Marcin Zurakowski
