stable

openssh-6.6.1p1-13.fc21

FEDORA-2015-11067 created by jjelen 9 years ago for Fedora 21

This update brings security fix for two announced vulnerabilities. Namely XSECURITY restrictions bypass under certain conditions AND weakness of agent locking (ssh-add -x) to password guessing (more info in related bugs). For more information see related bugs.

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2015-11067

This update has been submitted for testing by jjelen.

9 years ago

Taskotron: depcheck test PASSED on i386. Result log: https://taskotron.fedoraproject.org/taskmaster//builders/x86_64/builds/102843/steps/runtask/logs/stdio (results are informative only)

Taskotron: depcheck test PASSED on x86_64. Result log: https://taskotron.fedoraproject.org/taskmaster//builders/x86_64/builds/102843/steps/runtask/logs/stdio (results are informative only)

User Icon hreindl commented & provided feedback 9 years ago
karma

works for me

This update is currently being pushed to the Fedora 21 testing updates repository.

9 years ago

This update has been pushed to testing

9 years ago
User Icon flo commented & provided feedback 9 years ago
karma

works fine for me

Critical path update approved

9 years ago
User Icon dimitrisk commented & provided feedback 9 years ago
karma

works for me, client and server.

This update has reached the stable karma threshold and will be pushed to the stable updates repository

9 years ago

Taskotron: upgradepath test PASSED on noarch. Result log: https://taskotron.fedoraproject.org/taskmaster//builders/x86_64/builds/104169/steps/runtask/logs/stdio (results are informative only)

This update is currently being pushed to the Fedora 21 stable updates repository.

9 years ago

This update has been pushed to stable

9 years ago

Please login to add feedback.

Metadata
Type
security
Karma
3
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
disabled
Stable by Time
disabled
Dates
submitted
9 years ago
in testing
9 years ago
in stable
9 years ago
BZ#1238231 CVE-2015-5352 openssh: XSECURITY restrictions bypass under certain conditions in ssh(1)
0
0
BZ#1238238 openssh: weakness of agent locking (ssh-add -x) to password guessing
0
0
BZ#1238241 openssh: various flaws [fedora-all]
0
0

Automated Test Results

Test Cases

0 0 Test Case OpenSSH