https://bugzilla.mindrot.org/show_bug.cgi?id=2747

--- Comment #1 from Mikhail T. <[email protected]> ---
There is, actually, a security implication to this bug -- a MITM attack
may be made possible by sending the user to the host identified by the
same IP-address in a different notation.

Instead of a "the host's key has changed" *error*, they'll get a "would
you like to add this key" *warning*...

-- 
You are receiving this mail because:
You are watching the assignee of the bug.
_______________________________________________
openssh-bugs mailing list
[email protected]
https://lists.mindrot.org/mailman/listinfo/openssh-bugs

Reply via email to