buildroot/package/openssh
Fabrice Fontaine ef0daa817d package/openssh: security bump to version 9.1p1
This release contains fixes for three minor memory safety problems.
None are believed to be exploitable, but we report most memory safety
problems as potential security vulnerabilities out of caution.

 * ssh-keyscan(1): fix a one-byte overflow in SSH- banner processing.
   Reported by Qualys

 * ssh-keygen(1): double free() in error path of file hashing step in
   signing/verify code; GHPR333

 * ssh-keysign(8): double-free in error path introduced in openssh-8.9

https://www.openssh.com/txt/release-9.1

Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
(cherry picked from commit bb571dc3e8)
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
2022-10-15 17:27:52 +02:00
..
Config.in package/openssh: allow sandboxing to be disabled as workaround for seccomp issues 2022-09-29 16:04:42 +02:00
openssh.hash package/openssh: security bump to version 9.1p1 2022-10-15 17:27:52 +02:00
openssh.mk package/openssh: security bump to version 9.1p1 2022-10-15 17:27:52 +02:00
S50sshd
sshd-sysusers.conf
sshd.service