MESSAGE
DATE | 2002-08-01 |
FROM | Ruben Safir
|
SUBJECT | Subject: [hangout] [draht@suse.de: [suse-security-announce] Not affected: openssh trojan from ftp.openbsd.org]
|
Who says BSD guys aren't human
Ruben
----- Forwarded message from Roman Drahtmueller -----
Mailing-List: contact suse-security-announce-help-at-suse.com; run by ezmlm Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: X-Mailinglist: suse-security-announce Delivered-To: mailing list suse-security-announce-at-suse.com Delivered-To: moderator for suse-security-announce-at-suse.com Date: Thu, 1 Aug 2002 14:51:48 +0200 (MEST) From: Roman Drahtmueller Reply-To: Roman Drahtmueller To: suse-security-announce-at-suse.com X-Organization: SuSE Subject: [suse-security-announce] Not affected: openssh trojan from ftp.openbsd.org X-MIME-Autoconverted: from QUOTED-PRINTABLE to 8bit by www2.mrbrklyn.com id g71GcOi5001959
-----BEGIN PGP SIGNED MESSAGE-----
Thu Aug 1 14:40:28 MEST 2002
The openssh source tarball openssh-3.4p1.tar.gz from the openbsd ftp server ftp.openbsd.org has been trojaned with code that opens network connections to a server in the internet (203.62.158.32:6667) at compile time. The backdoor does not have any influence on the runtime behaviour of the package to our current knowlege. As of now, the package on the openbsd ftp server has not been removed/cleaned.
The SuSE openssh package for SuSE Linux 8.0 has the same version 3.4p1, but it is built from non-trojaned sources. Therefore, the SuSE openssh packages are not affected by this backdoor.
We thank our users who have expressed their concerns about the backdoor when they notified SuSE Security, and to Len Rose from full-disclosure-at-lists.netsys.com.
Regards, Roman Drahtmüller, SuSE Security. - -- - - | Roman Drahtmüller // "You don't need eyes to see, | SuSE Linux AG - Security Phone: // you need vision!" | Nürnberg, Germany +49-911-740530 // Maxi Jazz, Faithless | - -
-----BEGIN PGP SIGNATURE----- Version: 2.6.3i Charset: noconv
iQEVAwUBPUku1Hey5gA9JdPZAQHNgwf7Bj2C9aJyCR+ooCxOr/2wpTYKkn0wEHFS DsKUXyXWXKXQORs09npwxVh2NF9WIotreDAwG4MOnLgMdGD6ai+rcV0Y16UIo0YC V8SwhpKemDTHPCnDZq9TTywsWhXIpsOmFZelHqbzEvbL99Ibf7GCDfMmfAYkId+E WOaC9LA5MPICiMQYB/o1hRpiU49iKvEfvOWzYb3E+OcA1vKiYdO9cmSQXNXV50oS l5FR345zGnl1dWvu6jbXaxNwgbMeWF1T5Ow0RE7a6/9iA/WiGaNAkd8GVUPSDW0G r+xCYmmcp5VNb3UnMlZLa6FQP8pmNYJtI6emVAGRo5mBPmwxC3S2JA== =CLck -----END PGP SIGNATURE-----
-- To unsubscribe, e-mail: suse-security-announce-unsubscribe-at-suse.com For additional commands, e-mail: suse-security-announce-help-at-suse.com
----- End forwarded message -----
-- __________________________
Brooklyn Linux Solutions __________________________ http://www.mrbrklyn.com - Consulting http://www.nylxs.com/radio - Free Software Radio Show and Archives http://www.brooklynonline.com - For the love of Brooklyn http://www.nylxs.com - Leadership Development in Free Software http://www.nyfairuse.org - The foundation of Democracy http://www2.mrbrklyn.com/resources - Unpublished Archive or stories and articles from around the net http://www2.mrbrklyn.com/mp3/dr.mp3 - Imagine my surprise when I saw you... http://www2.mrbrklyn.com/downtown.html - See the New Downtown Brooklyn....
1-718-382-5752
____________________________ New Yorker Linux Users Scene Fair Use - because it's either fair use or useless....
|
|