Your message dated Sat, 02 May 2026 17:06:00 +0000
with message-id <[email protected]>
and subject line Bug#295603: fixed in scanssh 2.1.4-1
has caused the Debian Bug report #295603,
regarding scanssh: uses wrong source ip?
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
295603: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=295603
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: scanssh
Version: 2.0-4
Severity: important

Got 2 ifaces on this box, bound to 2 different networks:

  eth0: 192.168.0.0/24
  eth1: 10.0.0.0/24

all properly setup.

When I run (from eth1:10.0.0.2):

  scanssh 10.0.0.1

i get:

  10.0.0.1:22 <timeout>

after a while. Still:

  ssh 10.0.0.1

works as expected.

tcpdump shows:

  192.168.0.2.41479 > 10.0.0.1.22: S [tcp sum ok]

Seems scanssh uses the wrong src addr. (192.168.0.2 instead of 10.0.0.2),
thus falling into a NAT trap (SYN ACK is dropped by the remote host):

  DROP: IN=eth1 OUT= MAC=... SRC=10.0.0.1 DST=192.168.0.2 LEN=44 TOS=0x10
        PREC=0x00 TTL=64 ID=0 DF PROTO=TCP SPT=22 DPT=3140 WINDOW=5840
        RES=0x00 ACK SYN URGP=

That wouldn't happen if the correct 10.0.0.2 was used as the SYN packet
SRC address.


Cheers,
Cristian

-- System Information:
Debian Release: 3.1
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)
Kernel: Linux 2.4.27
Locale: LANG=C, LC_CTYPE= (charmap=ANSI_X3.4-1968)

Versions of packages scanssh depends on:
ii  libc6                       2.3.2.ds1-20 GNU C Library: Shared libraries an
ii  libdumbnet1                 1.8-1.3      A dumb, portable networking librar
ii  libevent1                   1.0b-1.1     An asynchronous event notification
ii  libpcap0.7                  0.7.2-7      System interface for user-level pa

-- no debconf information


--- End Message ---
--- Begin Message ---
Source: scanssh
Source-Version: 2.1.4-1
Done: Fukui Daichi <[email protected]>

We believe that the bug you reported is fixed in the latest version of
scanssh, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Fukui Daichi <[email protected]> (supplier of updated scanssh 
package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Thu, 23 Apr 2026 14:59:05 +0000
Source: scanssh
Built-For-Profiles: noudeb
Architecture: source
Version: 2.1.4-1
Distribution: unstable
Urgency: medium
Maintainer: Fukui Daichi <[email protected]>
Changed-By: Fukui Daichi <[email protected]>
Closes: 295603 1119555 1125424
Changes:
 scanssh (2.1.4-1) unstable; urgency=medium
 .
   [ Fukui Daichi ]
   * New upstream version 2.1.4 (Closes: #1119555)
     The issue is already fixed at upstream.
   * New maintainer (Closes: #1125424)
   * Remove debian/patches files
     Because they are already applied at upstream.
   * Add signing key and enable GPG tag verification
   * Remove obsolete d/README.Debian
   * Adjust drop-md5 patch for upstream 2.1.4 changes
   * d/patches: Update to follow DEP3 and add missing series file
   * Add d/s/lintian-overrides
     False positive: verified via signed Git tags rather than .asc
   * d/patches: Document missing help options in usage output
 .
   [ наб ]
   * Fix manual formatting
   * Document all flags in manual
     Closes: #295603
   * Drop md5.[ch], Depends: libmd-dev
Checksums-Sha1:
 4326c345c6114864e8f3228a542e8a6e88a7cbe3 1902 scanssh_2.1.4-1.dsc
 496c525825ad17fc92801fb3b03764f77c5ec29e 129672 scanssh_2.1.4.orig.tar.xz
 e99f694316d993ce316b5b6125d22351aeb09e1a 12632 scanssh_2.1.4-1.debian.tar.xz
 3e730d2b3216b28707bc4e450114bc3ba468f0a6 7349 scanssh_2.1.4-1_source.buildinfo
Checksums-Sha256:
 eaaa09f0e702359e155ca72d513c897462281aa4e939f36614c4714d40165037 1902 
scanssh_2.1.4-1.dsc
 ebc80a18f6288eeb1497842bb877213abe91ee2644a40077e1a0e1dc31acf373 129672 
scanssh_2.1.4.orig.tar.xz
 d71eaef5e1b6d35c6efcc73837741f040f56339ddd8784c4920508cb0bea913c 12632 
scanssh_2.1.4-1.debian.tar.xz
 8a8dd5a13132fdf2a1bcabb2b4a52049e69f53daa91bc56c3080ace6aa1230b7 7349 
scanssh_2.1.4-1_source.buildinfo
Files:
 ad2bf6488910ddaab4318f2793343f6c 1902 net - scanssh_2.1.4-1.dsc
 9b306f56fed0aa4220cad40712c96359 129672 net - scanssh_2.1.4.orig.tar.xz
 f6005f9c4b7cb2b5210beec724b17734 12632 net - scanssh_2.1.4-1.debian.tar.xz
 fbe42db7c911c1d6cfd8cd7d2786f8d5 7349 net - scanssh_2.1.4-1_source.buildinfo

-----BEGIN PGP SIGNATURE-----
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=5WTB
-----END PGP SIGNATURE-----

Attachment: pgplOgNTIwp6L.pgp
Description: PGP signature


--- End Message ---

Reply via email to