Remote Unauthenticated Code Execution Vulnerability in OpenSSH server

presumably it has also appeared on your radar

1 Like

@capote

As stated in the report under “affected systems”:

“OpenBSD systems are unaffected by this bug, as OpenBSD developed a secure mechanism in 2001 that prevents this vulnerability.”

Theo De Raadt is the creator of OpenBSD, but also the original author for OpenSSH - he’s a well known security freak, no wonder his systems are almost never involved / vulnerable!
He found and fixed this bug (In 2001!) long before it appeared! Chapeau!

My 2 cents
Andy

Just to share something more:

TL;DR: For now no evidence of eploit on x86_64 systems; CentOS 6,7 and 8 not affected; a fix for 9 should arrive soon.

1 Like