openssh vulnerability

wwp subscript at free.fr
Thu May 15 16:21:11 GMT 2008


Hello Matt,


On Thu, 15 May 2008 11:54:33 -0400 Matt McCutchen <matt at mattmccutchen.net> wrote:

> Gabriel,
> 
> You sent this internal-looking message to the rsync list.  If it
> pertains to rsync, would you please explain how?

Please ignore the former message, it was not intended to the rsync ML,
sorry for the noise (and thanks to address completion) :-\.


Regards,

> On Thu, 2008-05-15 at 11:39 +0200, Gabriel CORRE wrote:
> > Hello Rene,
> > 
> > Maybe have you already upgrade you openssl/openssh packages if you using debian (or *buntu).
> > 
> > http://article.gmane.org/gmane.linux.debian.security.announce/1614
> > 
> > We have found some weak keys :
> > - nightlycomp at rio (sure)
> > - comp at rio (maybe)
> > 
> > Are you up to date ?
> > Can Fabrice sent you new ssh public ?
> > 
> > Tahnks
> > Best Regards
> > 
> > email message attachment ([SECURITY] [DSA 1576-1] New openssh packages
> > fix predictable randomness.eml)
> > > -------- Forwarded Message --------
> > > From: Florian Weimer <fw at deneb.enyo.de>
> > > Reply-To: debian-security at lists.debian.org
> > > To: debian-security-announce at lists.debian.org
> > > Subject: [SECURITY] [DSA 1576-1] New openssh packages fix
> > > predictable randomness
> > > Date: Wed, 14 May 2008 11:24:56 +0200
> > > 
> > -- 
> > Please use reply-all for most replies to avoid omitting the mailing list.
> > To unsubscribe or change options: https://lists.samba.org/mailman/listinfo/rsync
> > Before posting, read: http://www.catb.org/~esr/faqs/smart-questions.html

-- 
wwp
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.samba.org/archive/rsync/attachments/20080515/b28887e9/signature.bin


More information about the rsync mailing list