*** This bug is a security vulnerability ***

You have been subscribed to a public security bug:

Vulnerable ssh keys expose systems to attack that don't have the openssl
PRNG vulnerability.  The vulnerable key scanning tools such as ssh-
vulnkey need to be backported to supported releases.

Futher, it would be helpful to make a statically compiled version
downloadable via http so non debian/ubuntu administrators can scan their
systems' authorized_keys and other files for vulnerable keys introduced
by debian/ubuntu users.

** Affects: openssh (Ubuntu)
     Importance: Undecided
         Status: Fix Released

-- 
ssh-vulnkey needs to be backported to Ubuntu 6.06 LTS
https://bugs.launchpad.net/bugs/231047
You received this bug notification because you are a member of Ubuntu Server 
Team, which is subscribed to openssh in ubuntu.

-- 
Ubuntu-server-bugs mailing list
[email protected]
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs

Reply via email to