Can anyone tell me if openssh-2.5.2 is vulnerable the crc32 compensation attack? Thanks. ---------------------------------------------------- Jonathan Wilson System Administrator Cedar Creek Software http://www.cedarcreeksoftware.com Central Texas IT http://www.centraltexasit.com
We've just discussed it recently, but IIRC, the version number alone isn't enough to tell whether it is vulnerable. Is there a URL for archives to refer these questions to? Ray On Tue, 15 Jan 2002, JW wrote:
Can anyone tell me if openssh-2.5.2 is vulnerable the crc32 compensation attack?
Thanks.
---------------------------------------------------- Jonathan Wilson System Administrator
Cedar Creek Software http://www.cedarcreeksoftware.com Central Texas IT http://www.centraltexasit.com
-- To unsubscribe, e-mail: suse-security-unsubscribe@suse.com For additional commands, e-mail: suse-security-help@suse.com
* Ray Dillinger (bear@sonic.net) [020115 18:44]:
Is there a URL for archives to refer these questions to?
participants (3)
-
Christopher Mahmood
-
JW
-
Ray Dillinger