[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: ssh vulnerability in the wild




On Tuesday, Sep 16, 2003, at 08:34 US/Pacific, Andreas Barth wrote:

* Thomas Horsten (thomas@horsten.com) [030916 17:32]:
Is there an emergency patch/workaround for this, if disabling ssh is not
an option? Are systems with Privilege Separation affected?

Filtering access to allow only trusted machines. But please remember:
Each allowed machine could exploit your machine.



Does this vulnerability require a login? Is a system safe if it does not
allow root login, and password logins?






Reply to: