FreeBSD Security Advisory FreeBSD-SA-08:05.openssh
mouss at netoyen.net
Thu Apr 17 08:59:00 UTC 2008
Ian Smith wrote:
> On Thu, 17 Apr 2008, FreeBSD Security Advisories wrote:
> > IV. Workaround
> > Disable support for IPv6 in the sshd(8) daemon by setting the option
> > "AddressFamily inet" in /etc/ssh/sshd_config.
> > Disable support for X11 forwarding in the sshd(8) daemon by setting
> > the option "X11Forwarding no" in /etc/ssh/sshd_config.
> It's not quite clear from this whether both workarounds are required, or
> just either one, until upgrading?
my understanding is that either workaround will prevent the problem,
since the problem relies on x11 forwarding and ipv6 being both enabled.
More information about the freebsd-security