From owner-ssh@clinet.fi  Sat Jun  2 06:27:36 2001
Received: from smtp1.clinet.fi (smtp1.clinet.fi [194.100.2.57])
	by hutcs.cs.hut.fi (8.9.3/8.9.3) with ESMTP id GAA22452
	for <ssh-archiver@cs.hut.fi>; Sat, 2 Jun 2001 06:27:36 +0300 (EET DST)
Received: from mail.clinet.fi (mail.clinet.fi [194.100.0.7])
	by smtp1.clinet.fi (Postfix) with ESMTP
	id CA7F62179E; Sat,  2 Jun 2001 06:27:35 +0300 (EEST)
Received: (from majordom@localhost)
	by mail.clinet.fi (8.9.3/8.9.3) id GAA05507
	for ssh-outgoing; Sat, 2 Jun 2001 06:03:29 +0300
Received: from nuinfo.northwestern.edu (lunde@nuinfo.nwu.edu [129.105.212.72])
	by mail.clinet.fi (8.9.3/8.9.3) with ESMTP id GAA05503
	for <ssh@clinet.fi>; Sat, 2 Jun 2001 06:03:28 +0300
Received: (from lunde@localhost)
	by nuinfo.northwestern.edu (8.8.8/8.8.8) id WAA19615;
	Fri, 1 Jun 2001 22:03:25 -0500 (CDT)
Message-Id: <200106020303.WAA19615@nuinfo.northwestern.edu>
Subject: Re: OpenSSH 2.2 vulnerability?
To: rpinz@hotjobs.com
Date: Fri, 01 Jun 2001 22:03:24 CDT
Cc: ssh@clinet.fi
In-Reply-To: <3.0.5.32.20010531201339.00b868b0@fs3.ny.genx.net>; from "Ron Pinz" at May 31, 2001 8:13 pm
From: Albert-Lunde@northwestern.edu (Albert Lunde)
Reply-To: Albert-Lunde@northwestern.edu (Albert Lunde)
X-Mailer: Elm [revision: 212.5]
Sender: owner-ssh@clinet.fi
Precedence: bulk

> Anyone have specific information regarding the hole(s) used to hack the
> Apache Software Foundation?  I have included the link that generically
> discusses the hack and it's implications to the ASF below...
> 
> http://www.apache.org/info/20010519-hack.html
> 
> I can't seem to find additional references regarding OSSH2.2
> vulnerabilities...

Try:

http://www.openssh.com/security.html

--
    Albert Lunde          Albert-Lunde@northwestern.edu (new address)
                          Albert-Lunde@nwu.edu (old address)

