[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: ssh in Debian - version unclear



Norman Schmidt <Norman.Schmidt@chemie.stud.uni-erlangen.de> writes:

> I am using the standard ssh package with Potato. Its version is
> 1.2.3-9.4.
> 
> The scanssh tool shows the version string to be SSH-1.5-OpenSSH-1.2.3.
> 
> The newest version of OpenSSH is 3.0.2p1, according to the OpenSSH
> website. 
> 
> I am wondering to which official OpenSSH release the above version
> translates, in order to find out against which exploits it may be
> vulnerable (the main servers of some institutes of mna university were
> hacket during the christmas holidays - and I don´t want to fall prey to
> that, too...).

Hi.  What you have is based on official ("upstream") version 1.2.3,
but has had all known security vulnerabilities patched, so you should
be okay.

-- 
Aaron M. Ucko, KB1CJC <amu@mit.edu> (finger amu@monk.mit.edu)



Reply to: