> Initially it appears that OpenSSH prior to version 2.3 was vulnerable to
> an attack in the CRC32 code in the daemon.
if you use SSH Protocol Version 1, no?
SSH1 has been pretty severely and publicly deprecated from what i understand.
ie:
$ head -n 5 /etc/sshd_config
# This is the sshd server system-wide configuration file. See sshd(8)
# for more information.
Port 22
Protocol 2
_______________________________________________
cobalt-security mailing list
[EMAIL PROTECTED]
http://list.cobalt.com/mailman/listinfo/cobalt-security