POC and patch for the CVE-2018-15473

Brett Glass brett at lariat.org
Mon May 13 16:32:31 UTC 2019


At 10:13 AM 5/13/2019, you wrote:

>On Mon 2019-05-13 (09:51), Brett Glass wrote:
> > Is the FreeBSD port of OpenSSH 7.8 available for FreeBSD 11-STABLE
> > from the ports collection and as a binary package? If not, shouldn't it be?
>
>Yes, you can use the original at /usr/ports/security/openssh-portable

On my FreeBSD 11-STABLE boxes, the "distinfo" file for the 
"openssh-portable" port shows the version as "openssh-7.9p1". So, 
this is not 7.8 (which was tested with 12.0, at least, if not 11.x) 
and also has not been specifically tailored for FreeBSD. Am I 
likely to see any issues with the use of existing configuration 
files, performance, or features? Just asking, as a precaution, to 
ensure that I do not find myself with an unreachable machine if I 
install on a remote server.

--Brett Glass 



More information about the freebsd-security mailing list