所有文章

OpenSSH 可移植版-遠端代碼競行漏洞

日期: 分類: «資安» 作者: ols3

OpenSSH sec

sshd(8) in Portable OpenSSH versions 8.5p1 to 9.7p1 (inclusive). Race condition resulting in potential remote code execution. A race condition in sshd(8) could allow remote code execution as root on non-OpenBSD systems. This attack could be prevented by disabling the login grace timeout (LoginGraceTime …

OpenSSH 9.6 (2023/12/18)

日期: 分類: «OpenBSD» 作者: ols3

OpenSSH 9.6 釋出,修正 SSH 傳輸協定的缺陷,避免 Terrapin 攻擊(MITM 中間人水龜攻擊):

當客戶端和伺服器都支援時,OpenSSH 9.6 新的「嚴格 KEX」協定 …