The affected versions have experimental support to restart SSH connections and the client code was activated by default. This configuration allows malicious servers to leak memory to the server, including user’s private keys.
OpenSSH is a Secure Shell (SSH) implementation, a protocol which helps to secure network communications via the encryption of network traffic over multiple authentication methods and by providing secure tunneling capabilities. It can be implemented to different Linux-based OS, such as Ubuntu and Mac OS X.
Source: Segu.info
0 Comments