[f-nsp] OpenSSH vulnerability

Andrew Lee andrew at peak.org
Wed Sep 17 14:47:10 EDT 2003


Is Foundry gear vulnerable to the remote exploit
(http://www.cert.org/advisories/CA-2003-24.html) in the OpenSSH engine?

Apparently some Cisco gear is:
http://www.cisco.com/warp/public/707/cisco-sa-20030917-openssh.shtml
because they used the OpenSSH engine in CatOS (PIX and IOS are not).  I
hear rumblings that Juniper is as well.

There doesn't seem to be anything on the web site, their latest press
release was 9/8. 

It would be nice to know for sure one way or the other.





More information about the foundry-nsp mailing list