[BACK]Return to errata59.html CVS log [TXT][DIR] Up to [local] / www

Diff for /www/errata59.html between version 1.1 and 1.2

version 1.1, 2016/02/20 14:18:42 version 1.2, 2016/03/10 11:57:24
Line 83 
Line 83 
   
 <ul>  <ul>
   
 <li>None yet.  <li id="001_sshd">
   <font color="#009000"><strong>001: SECURITY FIX: March 10, 2016</strong></font>
   &nbsp; <i>All architectures</i><br>
   <a href="http://www.openssh.com/txt/x11fwd.adv">
   Lack of credential sanitization allows injection of commands to xauth(1).</a>
   <br>
   Prevent this problem immediately by not using the "X11Forwarding" feature
   (which is disabled by default)
   <br>
   <a href="http://ftp.openbsd.org/pub/OpenBSD/patches/5.9/common/001_sshd.patch.sig">
   A source code patch exists which remedies this problem.</a>
   <p>
   
 </ul>  </ul>
   

Legend:
Removed from v.1.1  
changed lines
  Added in v.1.2