Alerts This Week
Warning Icon 1 666
Alerts This Week
Warning Icon 1 666

Slackware 10.2: SSA:2006-045-06 Critical Command Execution in OpenSSH

slackware
Calendar Grey February 15, 2006
Dist Slackware Esm H88
Fortify your infrastructure by implementing the latest openssh updates for Slackware in response to a significant vulnerability described in the associated notice.
New openssh packages are available for Slackware 8.1, 9.0, 9.1, 10.0, 10.1, 10.2, and -current to fix a security issue

Summary

Here are the details from the Slackware 10.2 ChangeLog: patches/packages/openssh-4.3p1-i486-1.tgz: Upgraded to openssh-4.3p1. This fixes a security issue when using scp to copy files that could cause commands embedded in filenames to be executed. For more information, see: https://www.cve.org/CVERecord?id=CVE-2006-0225 (* Security fix *)

Where Find New Packages

Updated package for Slackware 8.1:
Updated package for Slackware 9.0:
Updated package for Slackware 9.1:
Updated package for Slackware 10.0:
Updated package for Slackware 10.1:
Updated package for Slackware 10.2:
Updated package for Slackware -current:

MD5 Signatures

Slackware 8.1 package: e48cf3c1dd582b5e21e6acc3daea1af0 openssh-4.3p1-i386-1.tgz
Slackware 9.0 package: 47ad2060666d1beafec836ad3c20d5fd openssh-4.3p1-i386-1.tgz
Slackware 9.1 package: b795fea0fa188746c2b5edc93273e7b7 openssh-4.3p1-i486-1.tgz
Slackware 10.0 package: f02633326a65201fcb1187cf86d101f4 openssh-4.3p1-i486-1.tgz
Slackware 10.1 package: adbdf45d3476c146c40f3990665cf2bf openssh-4.3p1-i486-1.tgz
Slackware 10.2 package: 8ca842462851056fa3ce129dae847fbe openssh-4.3p1-i486-1.tgz
Slackware -current package: df20d506217f453e60190120b1c69a8e openssh-4.3p1-i486-1.tgz

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the package as root: # upgradepkg openssh-4.3p1-i486-1.tgz Next, restart the sshd daemon: . /etc/rc.d/rc.sshd restart

Related News

Your message here