[BACK]Return to errata58.html CVS log [TXT][DIR] Up to [local] / www

Diff for /www/errata58.html between version 1.15 and 1.16

version 1.15, 2016/02/20 14:18:42 version 1.16, 2016/03/10 11:57:24
Line 191 
Line 191 
 A source code patch exists which remedies this problem.</a>  A source code patch exists which remedies this problem.</a>
 <p>  <p>
   
   <li id="011_sshd">
   <font color="#009000"><strong>011: SECURITY FIX: March 10, 2016</strong></font>
   &nbsp; <i>All architectures</i><br>
   <a href="http://www.openssh.com/txt/x11fwd.adv">
   Lack of credential sanitization allows injection of commands to xauth(1).</a>
   <br>
   Prevent this problem immediately by not using the "X11Forwarding" feature
   (which is disabled by default)
   <br>
   <a href="http://ftp.openbsd.org/pub/OpenBSD/patches/5.8/common/011_sshd.patch.sig">
   A source code patch exists which remedies this problem.</a>
   <p>
   
 </ul>  </ul>
   
 <hr>  <hr>

Legend:
Removed from v.1.15  
changed lines
  Added in v.1.16