OVMSA-2016-0030

OVMSA-2016-0030 - openssh security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2016-02-24

Description


[4.3p2-82.0.1]
- change default value of MaxStartups - CVE-2010-5107 (John Haxby) [orabug 22766491]

[4.3p2-82]
- improve RNG seeding from /dev/random (#681291,#708056)

[4.3p2-81]
- make ssh(1)'s ConnectTimeout option apply to both the TCP connection and
SSH banner exchange (#750725)

[4.3p2-80]
- use IPV6_V6ONLY for sshd inet6 listening socket (#640857)

[4.3p2-79]
- add LANGUAGE to the sent/accepted evvironment (#710229)
- ssh-copy-id copies now id_rsa.pub by default (#731930)
- repairs man pages (#731925)

[4.3p2-78]
- set cloexec on accept socket (#642935)
- add umask to sftp (#720598)
- enable lastolg for big uids (#706315)

[4.3p2-77]
- enable selinux domain transition to passwd_t (#689406)

[4.3p2-76]
- enable pubkey auth in the fips mode (#674747)

[4.3p2-75]
- improve resseding the prng from /dev/urandom or /dev/random respectively (#681291)

[4.3p2-73]
- periodically ressed the prng from /dev/urandom or /dev/random respectively (#681291)

[4.3p2-72]
- change cipher preferences (#661716)

[4.3p2-71]
- change cipher preferences (#661716)
- enable to run sshd as non root user (#661669)

[4.3p2-70]
- reenable rekeying (#659242)

[4.3p2-69]
- add nss keys to key audit patch (#632402)

[4.3p2-68]
- key audit patch (#632402)

[4.3p2-47]
- supply forced command documentation (#532559)

[4.3p2-46]
- compile in the OpenSSL engine support

[4.3p2-45]
- record lastlog with big uid (#616396)

[4.3p2-44]
- add OpenSSL engine support (#594815)

[4.3p2-43]
- backport forced command directive (#532559)

[4.3p2-42]
- stderr does not more disturb sftp (#576765)


Related CVEs


CVE-2010-5107

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle VM 2.2 (i386) openssh-4.3p2-82.0.1.el5.src.rpme72facd42d66ffd4b85b5a0983e6fc7cOVMSA-2019-0013
openssh-4.3p2-82.0.1.el5.i386.rpm31515911a6000cc351a60dea773c3f4dOVMSA-2019-0013
openssh-clients-4.3p2-82.0.1.el5.i386.rpmadd02b94c9e94609af03d29d2af0a633OVMSA-2019-0013
openssh-server-4.3p2-82.0.1.el5.i386.rpm8907cbf43d3a5054185e08e13aae0fefOVMSA-2019-0013
Oracle VM 3.2 (x86_64) openssh-4.3p2-82.0.1.el5.src.rpme72facd42d66ffd4b85b5a0983e6fc7cOVMSA-2019-0013
openssh-4.3p2-82.0.1.el5.x86_64.rpm60d84c48031284a2008e456dfbe2d8e1OVMSA-2019-0013
openssh-clients-4.3p2-82.0.1.el5.x86_64.rpm7f49227b3900679c652922907e275457OVMSA-2019-0013
openssh-server-4.3p2-82.0.1.el5.x86_64.rpmf7e33be1146752eb9fb9799ac1d6fd25OVMSA-2019-0013



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete