cvs commit: src/crypto/openssh-4 session.c

Matthew Dillon dillon at apollo.backplane.com
Sat Apr 19 08:58:25 PDT 2008


:pavalos     2008/04/19 08:02:52 PDT
:
:DragonFly src repository
:
:  Modified files:        (Branch: DragonFly_RELEASE_1_12)
:    crypto/openssh-4     session.c 
:  Log:
:  Fix for CVE-2008-1657:
:  
:  "OpenSSH before 4.9 allows remote authenticated users to bypass the
:  sshd_config ForceCommand directive by modifying the .ssh/rc session file."

    Great, we'll include this in 1.12.2 as well.

					-Matt
					Matthew Dillon 
					<dillon at backplane.com>





More information about the Commits mailing list