[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
RE: [cobalt-users] If you have been a victim
- Subject: RE: [cobalt-users] If you have been a victim
- From: "Alex Lee" <alex@xxxxxxxxxx>
- Date: Mon Feb 19 11:16:10 2001
- List-id: Mailing list for users to share thoughts on Cobalt products. <cobalt-users.list.cobalt.com>
> Hate to give you the bad news but per SEVERAL posts here within
> the past week the SSH server package from pkg.nl.cobalt.com is
> OLD and EXPLOITABLE and needs to be upgraded.
stop spreading fud around. yes, that openssh pkg is old, granted but it's
not exploitable. just because you have idiots hammering your server via port
22 doesn't mean it's exploitable.
if you keep simple passwords such as root/root, then upgrading to a newer
version of ssh still won't help you.
alex