ELSA-2009-1287

ELSA-2009-1287 - openssh security, bug fix, and enhancement update

Type:SECURITY
Severity:LOW
Release Date:2009-09-08

Description


[4.3p2-36]
- tiny change in chroot sftp capability into openssh-server solve ls speed problem (#440240)

[4.3p2-35]
- workaround to plaintext recovery attack against CBC ciphers CVE-2008-5161 (#502230)

[4.3p2-34]
- disable protocol 1 in the FIPS mode

[4.3p2-33]
- fix scp hangup on exit (#454812)
- call integrity checks only on binaries which are part of the OpenSSH FIPS
modules

[4.3p2-32]
- log if FIPS mode is initialized (#492363)
- check the integrity of the binaries in the FIPS mode (#467268)

[4.3p2-31]
- fix ssh hangup on exit (#454812)

[4.3p2-30]
- add chroot sftp capability into openssh-server (#440240)


Related CVEs


CVE-2008-5161

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 5 (i386) openssh-4.3p2-36.el5.src.rpm477403ae551d857833da67b54dad9ab8ELSA-2016-3531
openssh-4.3p2-36.el5.i386.rpmf444cd5f8ab2e1bf3157531556b7f6adELSA-2016-3531
openssh-askpass-4.3p2-36.el5.i386.rpm74ee7d3acfccb884e3cdea876c944addELSA-2016-3531
openssh-clients-4.3p2-36.el5.i386.rpm7a1a18bbd74a26a913bfff4d1b3da9b1ELSA-2016-3531
openssh-server-4.3p2-36.el5.i386.rpm90a801f190ff526c1d9d4dd7aea7a9c1ELSA-2016-3531
Oracle Linux 5 (ia64) openssh-4.3p2-36.el5.src.rpm477403ae551d857833da67b54dad9ab8ELSA-2016-3531
openssh-4.3p2-36.el5.ia64.rpmb426b216d4da94a0587e91534488c173ELSA-2016-3531
openssh-askpass-4.3p2-36.el5.ia64.rpm50bd2ce08fffbb9b785b87be7fdf4486ELSA-2016-3531
openssh-clients-4.3p2-36.el5.ia64.rpmd66072f2a627694383a63475b83b4182ELSA-2016-3531
openssh-server-4.3p2-36.el5.ia64.rpm314d0ad8a3b09af64b3df5a612313ae4ELSA-2016-3531
Oracle Linux 5 (x86_64) openssh-4.3p2-36.el5.src.rpm477403ae551d857833da67b54dad9ab8ELSA-2016-3531
openssh-4.3p2-36.el5.x86_64.rpm1d3bc0002fdb0127eb8dc9a7755b7e04ELSA-2016-3531
openssh-askpass-4.3p2-36.el5.x86_64.rpm51ac9d6e2188cac6b340a010aed9a280ELSA-2016-3531
openssh-clients-4.3p2-36.el5.x86_64.rpm2cbdd2a49a68e163c1a0198243223088ELSA-2016-3531
openssh-server-4.3p2-36.el5.x86_64.rpm667f2b3311e184ea30d7b68e13df30d7ELSA-2016-3531



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete