On Thursday 06 August 2009 08:12:11 am Petr Vanek wrote: > This should have gone here to ML i guess? > > There was a security flaw in dropbear (the default SSH server on SHR) > configuration that made it listen to all network interfaces > (wifi,gprs,usb) instead of making it listen only to usb. This is a > problem because the default password is blank,and the SHR distribution > runs as root by default. > > http://blog.shr-project.org/2009/08/-hithere-was-a-security.html > > Petr
One of the reasons why it is smart to use passwd to add a password after flashing the distro. -- "We must plan for freedom, and not only for security, if for no other reason than only freedom can make security more secure." Karl Popper
signature.asc
Description: This is a digitally signed message part.
_______________________________________________ Shr-User mailing list [email protected] http://lists.shr-project.org/mailman/listinfo/shr-user
