cvs commit: src/crypto/openssh-4 session.c
    Matthew Dillon 
    dillon at apollo.backplane.com
       
    Sat Apr 19 08:58:25 PDT 2008
    
    
  
:pavalos     2008/04/19 08:02:52 PDT
:
:DragonFly src repository
:
:  Modified files:        (Branch: DragonFly_RELEASE_1_12)
:    crypto/openssh-4     session.c 
:  Log:
:  Fix for CVE-2008-1657:
:  
:  "OpenSSH before 4.9 allows remote authenticated users to bypass the
:  sshd_config ForceCommand directive by modifying the .ssh/rc session file."
    Great, we'll include this in 1.12.2 as well.
					-Matt
					Matthew Dillon 
					<dillon at backplane.com>
    
    
More information about the Commits
mailing list