openssh 1:6.7p1-5ubuntu1.2 source package in Ubuntu

Changelog

openssh (1:6.7p1-5ubuntu1.2) vivid-security; urgency=medium

  * SECURITY UPDATE: possible user impersonation via PAM support
    - debian/patches/pam-security-1.patch: don't resend username to PAM in
      monitor.c, monitor_wrap.c.
    - CVE number pending
  * SECURITY UPDATE: use-after-free in PAM support
    - debian/patches/pam-security-2.patch: fix use after free in monitor.c.
    - CVE number pending
  * SECURITY UPDATE:
    - debian/patches/CVE-2015-5600.patch: only query each
      keyboard-interactive device once per authentication request in
      auth2-chall.c.
    - CVE-2015-5600
  * SECURITY UPDATE: X connections access restriction bypass
    - debian/patches/CVE-2015-5352.patch: refuse ForwardX11Trusted=no
      connections attempted after ForwardX11Timeout expires in channels.c,
      channels.h, clientloop.c.
    - CVE-2015-5352

 -- Marc Deslauriers <email address hidden>  Fri, 14 Aug 2015 07:26:18 -0400

Upload details

Uploaded by:
Marc Deslauriers on 2015-08-14
Uploaded to:
Vivid
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
net
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
openssh_6.7p1.orig.tar.gz 1.3 MiB b2f8394eae858dabbdef7dac10b99aec00c95462753e80342e530bbb6f725507
openssh_6.7p1-5ubuntu1.2.debian.tar.xz 146.9 KiB 4c1bda53383770e19704abb9d0c54a5cb0a14f64f51247e29ebed97bd57c7cfe
openssh_6.7p1-5ubuntu1.2.dsc 2.7 KiB 2af4da5ac5a25c5120118ef7ba5587b52fda77c061698043df90da9b80ec26a9

View changes file

Binary packages built by this source

openssh-client: No summary available for openssh-client in ubuntu vivid.

No description available for openssh-client in ubuntu vivid.

openssh-client-dbgsym: No summary available for openssh-client-dbgsym in ubuntu vivid.

No description available for openssh-client-dbgsym in ubuntu vivid.

openssh-client-udeb: No summary available for openssh-client-udeb in ubuntu vivid.

No description available for openssh-client-udeb in ubuntu vivid.

openssh-client-udeb-dbgsym: No summary available for openssh-client-udeb-dbgsym in ubuntu vivid.

No description available for openssh-client-udeb-dbgsym in ubuntu vivid.

openssh-server: No summary available for openssh-server in ubuntu vivid.

No description available for openssh-server in ubuntu vivid.

openssh-server-dbgsym: No summary available for openssh-server-dbgsym in ubuntu vivid.

No description available for openssh-server-dbgsym in ubuntu vivid.

openssh-server-udeb: No summary available for openssh-server-udeb in ubuntu vivid.

No description available for openssh-server-udeb in ubuntu vivid.

openssh-server-udeb-dbgsym: No summary available for openssh-server-udeb-dbgsym in ubuntu vivid.

No description available for openssh-server-udeb-dbgsym in ubuntu vivid.

openssh-sftp-server: No summary available for openssh-sftp-server in ubuntu vivid.

No description available for openssh-sftp-server in ubuntu vivid.

openssh-sftp-server-dbgsym: No summary available for openssh-sftp-server-dbgsym in ubuntu vivid.

No description available for openssh-sftp-server-dbgsym in ubuntu vivid.

ssh: No summary available for ssh in ubuntu vivid.

No description available for ssh in ubuntu vivid.

ssh-askpass-gnome: No summary available for ssh-askpass-gnome in ubuntu vivid.

No description available for ssh-askpass-gnome in ubuntu vivid.

ssh-askpass-gnome-dbgsym: No summary available for ssh-askpass-gnome-dbgsym in ubuntu vivid.

No description available for ssh-askpass-gnome-dbgsym in ubuntu vivid.

ssh-krb5: No summary available for ssh-krb5 in ubuntu vivid.

No description available for ssh-krb5 in ubuntu vivid.