FreeBSD Security Advisory FreeBSD-SA-08:05.openssh

mouss mouss at netoyen.net
Thu Apr 17 08:59:00 UTC 2008


Ian Smith wrote:
> On Thu, 17 Apr 2008, FreeBSD Security Advisories wrote:
>
>  > IV.  Workaround
>  > 
>  > Disable support for IPv6 in the sshd(8) daemon by setting the option
>  > "AddressFamily inet" in /etc/ssh/sshd_config.
>  > 
>  > Disable support for X11 forwarding in the sshd(8) daemon by setting
>  > the option "X11Forwarding no" in /etc/ssh/sshd_config.
>
> It's not quite clear from this whether both workarounds are required, or
> just either one, until upgrading?
>   


my understanding is that either workaround will prevent the problem, 
since the problem relies on x11 forwarding and ipv6 being both enabled.


More information about the freebsd-security mailing list