FreeBSD Security Advisory FreeBSD-SA-08:05.openssh
mouss
mouss at netoyen.net
Thu Apr 17 08:59:00 UTC 2008
Ian Smith wrote:
> On Thu, 17 Apr 2008, FreeBSD Security Advisories wrote:
>
> > IV. Workaround
> >
> > Disable support for IPv6 in the sshd(8) daemon by setting the option
> > "AddressFamily inet" in /etc/ssh/sshd_config.
> >
> > Disable support for X11 forwarding in the sshd(8) daemon by setting
> > the option "X11Forwarding no" in /etc/ssh/sshd_config.
>
> It's not quite clear from this whether both workarounds are required, or
> just either one, until upgrading?
>
my understanding is that either workaround will prevent the problem,
since the problem relies on x11 forwarding and ipv6 being both enabled.
More information about the freebsd-security
mailing list