[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-Disclosure] SSH Exploit Request
- To: full-disclosure@lists.netsys.com
- Subject: Re: [Full-Disclosure] SSH Exploit Request
- From: Damian Gerow <damian@sentex.net>
- Date: Thu, 13 Nov 2003 19:25:22 -0500
Thus spake Florian Weimer (fw@deneb.enyo.de) [13/11/03 18:33]:
> > > The last exploit for a critical vulnerability in OpenSSH is from 2001.
> > >
> >
> > You might be helpful - in some /small/ way:
> >
> > Google for "gobbles" and "ssh".... Bingo!
>
> This vulnerability is not critical; it only affected a fraction of all
> deployed SSH systems.
Yes, but if the vulnerability affects the original posters systems, then he
has what he needs. It doesn't matter that his systems are a part of this
fraction, it matters that they are vulnerable.
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html