Koozali.org: home of the SME Server

Manually update SSH flaw in 5.5?

toby

Manually update SSH flaw in 5.5?
« on: September 20, 2003, 07:36:12 AM »
Since 5.5 is no longer supported can you manually apply patches to the SSH vulnerability if you have a number of machines that you are not yet in the position to upgrade. (A couple of our machines are on 5.5 due to issues with mirroring and the 845 chipset on 5.6 and i am not keen to go to 6.0u3). I presume that with the kernel being also a 2.2 variant that on 5.5 you could just run the following:

e-smith-openssh-1.8.1-02.noarch.rpm
openssh-3.7.1p1-1es2.i386.rpm
openssh-server-3.7.1p1-1es2.i386.rpm
openssh-clients-3.7.1p1-1es2.i386.rpm

If there are dependency issues is there another way around it?

Toby