version 1.32, 2015/12/06 11:54:58 |
version 1.33, 2016/01/14 14:51:54 |
|
|
A source code patch exists which remedies this problem.</a> |
A source code patch exists which remedies this problem.</a> |
<p> |
<p> |
|
|
|
<li id="022_sshd"> |
|
<font color="#009000"><strong>022: SECURITY FIX: January 14, 2016</strong></font> |
|
<i>All architectures</i><br> |
|
Experimental roaming code in the ssh client could be tricked by a hostile sshd |
|
server, potentially leaking key material. CVE-2016-077 and CVE-0216-078. |
|
<br> |
|
Prevent this problem immediately by adding the line "UseRoaming no" to |
|
<b>/etc/ssh/ssh_config</b>. |
|
<br> |
|
<a href="http://ftp.openbsd.org/pub/OpenBSD/patches/5.7/common/022_ssh.patch.sig"> |
|
A source code patch exists which remedies this problem.</a> |
|
<p> |
|
|
</ul> |
</ul> |
|
|
<hr> |
<hr> |