FreeBSD Security Advisory FreeBSD-SA-08:05.openssh
    mouss 
    mouss at netoyen.net
       
    Thu Apr 17 08:59:00 UTC 2008
    
    
  
Ian Smith wrote:
> On Thu, 17 Apr 2008, FreeBSD Security Advisories wrote:
>
>  > IV.  Workaround
>  > 
>  > Disable support for IPv6 in the sshd(8) daemon by setting the option
>  > "AddressFamily inet" in /etc/ssh/sshd_config.
>  > 
>  > Disable support for X11 forwarding in the sshd(8) daemon by setting
>  > the option "X11Forwarding no" in /etc/ssh/sshd_config.
>
> It's not quite clear from this whether both workarounds are required, or
> just either one, until upgrading?
>   
my understanding is that either workaround will prevent the problem, 
since the problem relies on x11 forwarding and ipv6 being both enabled.
    
    
More information about the freebsd-security
mailing list