[23122] in bugtraq

home help back first fref pref prev next nref lref last post

UPDATED: Cisco SSH Advisory

daemon@ATHENA.MIT.EDU (Damir Rajnovic)
Tue Nov 13 08:58:56 2001

Message-Id: <4.3.2.7.2.20011113124028.0544ce78@144.254.74.238>
Date: Tue, 13 Nov 2001 12:53:41 +0000
To: first-teams@first.org, bugtraq@securityfocus.com
From: Damir Rajnovic <gaus@cisco.com>
In-Reply-To: <MPEJKPBBNHCLOOGFNKDGOEFMCGAA.llgilber@cisco.com>
Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"

Hello,

Normally, we do not announce advisory update but since we received
a few queries about SSH in our products I think that this
update deserves an announce.

We updated SSH advisory at
http://www.cisco.com/warp/public/707/SSH-multiple-pub.html

The change is to point out that we are not vulnerable to deattack()
exploit. This means that we have not made an implementation
error described in VU#945216 (http://www.kb.cert.org/vuls/id/945216).

Regards,

Gaus
==============
Damir Rajnovic <psirt@cisco.com>, PSIRT Incident Manager, Cisco Systems
<http://www.cisco.com/warp/public/707/sec_incident_response.shtml>
Phone: +44 7715 546 033
4 The Square, Stockley Park, Uxbridge, MIDDLESEX UB11 1BN, GB
==============
There is no insolvable problems. Question remains: can you 
accept the solution? 


home help back first fref pref prev next nref lref last post