David Raufeisen (fortyoz@themes.org)
Sun, 1 Nov 1998 22:39:36 -0800 (PST)
noone uses ssh 2.x becuase it is not under the same free license as 1.x
and no one WILL use it, maybe corperate folk with money to waste.
On Sun, 1 Nov 1998 fuzebox@cyberdude.com wrote:
> Concerning using ssh...
>
> sshd 1.2.26 is question currently, as RootShell (http://www.rootshell.com)
> was apparantly compromised via ssh. There are a number of possible remote
> buffer-overflows within sshd-1.2.26, although the guys that make ssh say
> that they can't be exploited.
>
> The problem does NOT exist in sshd 2.x though, (but no one uses ssh2 yet.)
>
> Anyway, just wanted to warn people not to trust ssh so much, especially
> since security mailing lists are being flooded every day with ssh
> discussion.
>
> -Rob Thomas
>
>
This archive was generated by hypermail 2.0b3 on Mon 02 Nov 1998 - 03:23:29 PST