Changelog
openssh (1:7.2p2-6) unstable; urgency=medium
* debian/watch: Switch to HTTP (thanks, Nicholas Luedtke; closes:
#822997).
* Copy summary of supported SFTP protocol versions from upstream's
PROTOCOL file into the openssh-sftp-server package description (closes:
#766887).
* Set SSH_PROGRAM=/usr/bin/ssh1 when building openssh-client-ssh1 so that
scp1 works (reported by Olivier MATZ).
* Retroactively add a NEWS.Debian entry for the UseDNS change in 6.9 (see
LP #1588457).
* CVE-2016-6210: Mitigate user enumeration via covert timing channel
(closes: #831902).
* Backport upstream patch to close ControlPersist background process
stderr when not in debug mode or when logging to a file or syslog
(closes: #714526).
* Add a session cleanup script and a systemd unit file to trigger it,
which serves to terminate SSH sessions cleanly if systemd doesn't do
that itself, often because libpam-systemd is not installed (thanks,
Vivek Das Mohapatra, Tom Hutter, and others; closes: #751636).
* Stop generating DSA host keys by default (thanks, Santiago Vila; closes:
#823827).
-- Colin Watson <email address hidden> Fri, 22 Jul 2016 17:06:19 +0100