[Buildroot] [PATCH] openssh: security bump to version 7.1p2

Peter Korsgaard peter at korsgaard.com
Thu Jan 14 19:14:06 UTC 2016


>>>>> "Gustavo" == Gustavo Zacarias <gustavo at zacarias.com.ar> writes:

 > Fixes:
 > CVE-2016-0777 - Client Information leak from use of roaming connection
 > feature.

 > CVE-2016-0778 - A buffer overflow flaw was found in the way the OpenSSH
 > client roaming feature was implemented. A malicious server could
 > potentially use this flaw to execute arbitrary code on a successfully
 > authenticated OpenSSH client if that client used certain non-default
 > configuration options.

 > Signed-off-by: Gustavo Zacarias <gustavo at zacarias.com.ar>

Committed, thanks.

-- 
Bye, Peter Korsgaard



More information about the buildroot mailing list