critical Security update for openssh
SUSE-SLE-DESKTOP-12-SP1-2016-85


This update for openssh fixes the following issues: - CVE-2016-0777: A malicious or compromised server could cause the OpenSSH client to expose part or all of the client's private key through the roaming feature (bsc#961642) - CVE-2016-0778: A malicious or compromised server could could trigger a buffer overflow in the OpenSSH client through the roaming feature (bsc#961645) This update disables the undocumented feature supported by the OpenSSH client and a commercial SSH server.


cloud_download Downloads

SUSE Linux Enterprise Desktop 12.1 x86_64
  • Packages
    openssh
    Secure Shell Client and Server (Remote Login Program)
    6.6p1-33.1 lock rpm lock src
    openssh-askpass-gnome
    A GNOME-Based Passphrase Dialog for OpenSSH
    6.6p1-33.1 lock rpm lock src
    openssh-helpers
    OpenSSH AuthorizedKeysCommand helpers
    6.6p1-33.1 lock rpm