Nessus scan of FreeBSD 5.2.1 shows old version of ssh

Fernando Gleiser fgleiser at cactus.fi.uba.ar
Mon Jul 19 12:57:47 PDT 2004


On Mon, 19 Jul 2004, Ray Seals wrote:

> I just ran a Nessus scan against one of my machines.  The scan triggered
> on a version of ssh older than 3.7.1.

It's a false positive. Nessus just checks the version number, it doesn't
try to exploit the vulnerability to find if the system is indeed
vulnerable.

The sshd version in FreeBSD is older, but it's patched and not
vulnerable.

Don't worry about it.

>
> I ran /usr/bin/ssh -v and found that I have version 3.6.1p1.  I'm



			Fer


More information about the freebsd-questions mailing list