Monday, September 29, 2003

From - Thu Sep 25 09:15:18 2003
From: "Keith W. Salustro"
To: "Neil Johnson"
Subject: Byrd__2003-09-23__patched ssh for buffer overrun vuln.
Date: Tue, 23 Sep 2003 18:00:16 -0400

- downloaded latest openSSH for linux (RHL 7.3)
- upgraded packages
- found that ssh was a different version (commercial?) installed and running
on port 56.
- when I upgraded ssh, it did not affect the one on port 56, so I disabled
that one so it wouldn't start, and left openssh running on port 22.
- I have to investigate further.

--
------------------------
Keith W. Salustro, CISSP
Security Best Practices, Inc.
Direct: 617-875-7672 Fax: 530-660-8713