On Mon, 19 Jul 2004, Ray Seals wrote:

> I just ran a Nessus scan against one of my machines.  The scan triggered
> on a version of ssh older than 3.7.1.

It's a false positive. Nessus just checks the version number, it doesn't
try to exploit the vulnerability to find if the system is indeed
vulnerable.

The sshd version in FreeBSD is older, but it's patched and not
vulnerable.

Don't worry about it.

>
> I ran /usr/bin/ssh -v and found that I have version 3.6.1p1.  I'm



                        Fer
_______________________________________________
[EMAIL PROTECTED] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Reply via email to