Mailing the story:

Debian alert: ssh channel bug

  • Mailing list (Posted by on CST)
  • Story Type: Security; Groups: Debian
Joost Pol <joost@pine.nl> reports that OpenSSH versions 2.0 through 3.0.2 have an off-by-one bug in the channel allocation code. This vulnerability can be exploited by authenticated users to gain root privilege or by a malicious server exploiting a client with this bug.
What is your name?

What is your E-Mail address?

What is the email address of the recipient?

Add a special note from yourself?