URL: https://linuxfr.org/users/anonyme/journaux/une-faille-dans-openssh Title: Une faille dans OpenSSH ? Authors: Anonyme Date: 2004年05月03日T20:09:59+02:00 Tags: Score: 0 C'est ce qu'on peut lire dans cette alerte de idefense.com : [http://idefense.bugtraq.org/adv/05.03.04.txt(...)](http://idefense.bugtraq.org/adv/05.03.04.txt) _There is an upcoming OpenSSH vulnerability that we're working on with the OpenBSD Crew. Details will be published early next week. However, I can say that when OpenSSH's sshd(8) is running with priv seperation, the bug cannot be exploited for immediate root access._ Donc si vous ne l'avez pas encore fait, pensez à activer UsePrivilegeSeparation :) _iDEFENSE recommends either using OpenBSD, Openwall Linux (Owl), or Microsoft Windows. All other operating systems are insecure._ Mais en lisant ca, je me demande si c'est vraiment sérieux ...