| Summary: | CERT® Advisory CA-2003-26 - any effect on OpenSSH? | ||
|---|---|---|---|
| Product: | Portable OpenSSH | Reporter: | Steve Moulton <moulton> |
| Component: | sshd | Assignee: | OpenSSH Bugzilla mailing list <openssh-bugs> |
| Status: | CLOSED INVALID | ||
| Severity: | security | ||
| Priority: | P2 | ||
| Version: | -current | ||
| Hardware: | All | ||
| OS: | All | ||
|
Description
Steve Moulton
2003-10-09 02:04:44 AEST
Not significantly. For recent versions of OpenSSH, the OpenSSL ASN.1 code is used only for loading private keys. It is not used to verify signatures coming from the network. For future reference: A bug tracking system is intended for reporting bugs, please use the mailing list for questions like this. Mass change of RESOLVED bugs to CLOSED |