Koozali.org: home of the SME Server

Is there an SSH vulnerability in 5.5?

Matthew

Is there an SSH vulnerability in 5.5?
« on: May 11, 2003, 10:07:40 PM »
I have SME 5.5 update 6.  LanGaurd is reporting a possible vulnerability in the SSH on my machine.  I use SSH regularly.  Does anyone know if there is a vulnerability or not.  If so, how can I fix it?  Thanks.

Here is what LanGaurd reports:
Description : A remotely exploitable vulnerability exists in OpenSSH prior to version 3.3 (Version 3.3 is affected only if UsePrivilegeSeparation is disabled)

Thanks for the help!