new OpenSSH vulnerability

Michael Ossmann michael.ossmann "at" alttech.com
Thu, 07 Mar 2002 20:30:13 +0000


I know a lot of people are using OpenSSH for secure VNC tunneling, so I
thought this would be worth posting here:

  http://www.pine.nl/advisories/pine-cert-20020301.txt

It affects all versions from 2.0 through 3.0.2.  Upgrade to 3.1 ASAP:

  http://www.openssh.org/

-- 
Mike Ossmann, Tarantella/UNIX Engineer/Instructor
Alternative Technology, Inc.  http://www.alttech.com/
---------------------------------------------------------------------
To unsubscribe, mail majordomo "at" uk.research.att.com with the line:
'unsubscribe vnc-list' in the message BODY
See also: http://www.uk.research.att.com/vnc/intouch.html
---------------------------------------------------------------------