On Thursday 06 August 2009 08:12:11 am Petr Vanek wrote:
> This should have gone here to ML i guess?
>
> There was a security flaw in dropbear (the default SSH server on SHR)
> configuration that made it listen to all network interfaces
> (wifi,gprs,usb) instead of making it listen only to usb. This is a
> problem because the default password is blank,and the SHR distribution
> runs as root by default.
>
> http://blog.shr-project.org/2009/08/-hithere-was-a-security.html
>
> Petr

One of the reasons why it is smart to use passwd to add a password after 
flashing the distro.  
-- 
"We must plan for freedom, and not only for security, if for no other reason 
than only freedom can make security more secure."  Karl Popper

Attachment: signature.asc
Description: This is a digitally signed message part.

_______________________________________________
Shr-User mailing list
[email protected]
http://lists.shr-project.org/mailman/listinfo/shr-user

Reply via email to