version 1.6, 2000/11/18 04:39:34 |
version 1.7, 2000/12/05 17:18:58 |
|
|
<a name=all></a> |
<a name=all></a> |
<li><h3><font color=#e00000>All architectures</font></h3> |
<li><h3><font color=#e00000>All architectures</font></h3> |
<ul> |
<ul> |
|
<a name=ftpd></a> |
|
<li><font color=#009000><strong>036: SECURITY FIX: Dec 4, 2000</strong></font><br> |
|
OpenBSD 2.7's ftpd contains a one-byte overflow in the replydirname() function.<br> |
|
<a href="ftp://ftp.openbsd.org/pub/OpenBSD/patches/2.7/common/036_ftpd.patch"> |
|
A source code patch exists which remedies the problem.</a> |
|
<p> |
<a name=sshforwarding> </a> |
<a name=sshforwarding> </a> |
<li><font color=#009000><strong>035: SECURITY FIX: Nov 10, 2000</strong></font><br> |
<li><font color=#009000><strong>035: SECURITY FIX: Nov 10, 2000</strong></font><br> |
Hostile servers can force OpenSSH clients to do agent or X11 forwarding. |
Hostile servers can force OpenSSH clients to do agent or X11 forwarding. |