Date: Wed, 17 Sep 2003 04:19:09 -0500
From: Michael Walton <[email protected]>
To: [email protected]Subject: OPENSSH-SORCERER2003-09-17
--=-Xhr0+q1xl2DMp+j/4AVr
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable
=20
Sorcerer Update Advisory
Tap Into the Source
=20
=20
________________________________________________________________________
=20
Source Name: openssh-3.7p1
Advisory ID: SORCERER2003-09-17
Date: September 17th, 2003
________________________________________________________________________
=20
Problem Description:
Versions of ssh before 3.7 are affected by a buffer management
bug. A problem in the openssh buffer.c file was found that
may or may not be exploitable. The sources have been updated
to protect the innocent.
=20
Update:
Sources have been updated to the latest version.
________________________________________________________________________
=20
Updated Sources: openssh-3.7p1
=20
=20
________________________________________________________________________
=20
Recomendation:
augur synch && augur newer && augur update
=20
or
=20
augur easy
=20
=20
=20
------------------------------------------------------------------------
=20
Contacts:
=20
Email: [email protected]
Mail List: =20
https://lists.berlios.de/mailman/listinfo/sorcerer-spells
Web: http://sorcerer.wox.org
--=20
Michael Walton, CCNA
Network Analyst
Leapfrog Technologies LLC
Bitstreet Internet
Cova Systems
[email protected]
--=-Xhr0+q1xl2DMp+j/4AVr
Content-Type: application/pgp-signature; name=signature.asc
Content-Description: This is a digitally signed message part
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)
iD8DBQA/aCcNyk4R3FoMFJwRAmbTAKDE5BAadQsnEPzQVB8KgYbJ9lM2RwCg8nnk
kpUWYM2cuGRGKfTX4sbmEdA=
=wb1R
-----END PGP SIGNATURE-----
--=-Xhr0+q1xl2DMp+j/4AVr--