Hello, In the case that ssh ship by kde.debian.net is vulnerable, downgrading to the stable ssh version works as described.
Change in /etc/apt/sources.list deb http://kde.debian.net potato main crypto optional deb ftp://kde.debian.net/pub/kde potato main crypto optional to deb http://kde.debian.net potato main crypto deb ftp://kde.debian.net/pub/kde potato main crypto then apt-get update apt-get remove ssh apt-get install ssh This most likely reduces the functionality of some part of kde (kssh?). -- Rainer Dorsch Abt. Rechnerarchitektur e-mail:[EMAIL PROTECTED] Uni Stuttgart Tel.: +49-711-7816-215 / Fax: +49-711-7816-288 Breitwiesenstr. 20-22 D-70565 Stuttgart http://www.ra.informatik.uni-stuttgart.de/~rainer/ -- Rainer Dorsch Abt. Rechnerarchitektur e-mail:[EMAIL PROTECTED] Uni Stuttgart Tel.: +49-711-7816-215 / Fax: +49-711-7816-288 Breitwiesenstr. 20-22 D-70565 Stuttgart http://www.ra.informatik.uni-stuttgart.de/~rainer/ -- Rainer Dorsch Abt. Rechnerarchitektur e-mail:[EMAIL PROTECTED] Uni Stuttgart Tel.: +49-711-7816-215 / Fax: +49-711-7816-288 Breitwiesenstr. 20-22 D-70565 Stuttgart http://www.ra.informatik.uni-stuttgart.de/~rainer/

