Re: [CentOS] OpenVAS Vulnerability

2011-05-20 Thread John R. Dennison
On Fri, May 20, 2011 at 09:51:38PM -0400, Phil Schaffner wrote: > > https://www.redhat.com/security/data/cve/CVE-2008-5161.html He/she was pointed to that earlier this evening on IRC. This all boils down to yet another vulnerability scanner that is unaware of backports and flagging false-positiv

Re: [CentOS] OpenVAS Vulnerability

2011-05-20 Thread Phil Schaffner
Kaushal Shriyan wrote on 05/20/2011 09:17 PM: > http://www.securityfocus.com/bid/32319 > CVE : CVE-2008-5161 > BID : 32319 That appears to be a very old bug: https://www.redhat.com/security/data/cve/CVE-2008-5161.html Phil ___ CentOS mailing list CentOS

[CentOS] OpenVAS Vulnerability

2011-05-20 Thread Kaushal Shriyan
Hi, Please advice me about the below reported vulnerability. High OpenSSH X Connections Session Hijacking Vulnerability Risk: High Application: ssh Port: 22 Protocol: tcp ScriptID: 100584 Overview: OpenSSH is prone to a vulnerability that allows attackers to hijack forwarded X connections. Succes