Lucene search

K
oraclelinuxOracleLinuxELSA-2017-0641
HistoryMar 27, 2017 - 12:00 a.m.

openssh security and bug fix update

2017-03-2700:00:00
linux.oracle.com
19

0.0004 Low

EPSS

Percentile

5.1%

[5.3p1-122]

  • Allow to use ibmca crypto hardware (#1397547)
  • CVE-2015-8325: privilege escalation via user’s PAM environment and UseLogin=yes (1405374)
    [5.3p1-121]
  • Fix missing hmac-md5-96 from server offer (#1373836)
    [5.3p1-120]
  • Prevent infinite loop when Ctrl+Z pressed at password prompt (#1218424)
  • Remove RC4 cipher and MD5 based MAC from the default client proposal (#1373836)
    [5.3p1-119]
  • Resolve sftp force permission colision with umask (#1341747)
  • Relax bits needed check to allow hmac-sha2-512 with gss-group1-sha1- (#1353359)
  • close ControlPersist background process stderr when not in debug mode (#1335539)
  • Do not add a message ‘The agent has no identities.’ in ~/.ssh/authorized_keys (#1353410)