openssh PTY allocation

Markus Friedl mfriedl at gmail.com
Thu Jul 28 07:13:28 EST 2011


Do you have a banner vendor string that identifies all broken versions?

On Wednesday, July 27, 2011, Chris Adams <cmadams at hiwaay.net> wrote:
> Once upon a time, Damien Miller <djm at mindrot.org> said:
>> The problem is a bug in ScreenOS, it refuses pty-req channel requests
>> when the tty modes blob exceeds 256 bytes in length. If you want a
>> workaround that preserves the usability of the tty, then comment out
>> a couple of less-important modes in ttymodes.h and recompile
>
> I hate to say it, but is there any way to get a reasonable work-around
> into upstream OpenSSH?  Unfortunately, there are a ton of ScreenOS
> devices out there, and even if Juniper fixed the SSH bugs tomorrow, all
> those devices won't be updated overnight (if ever).  This will be a
> serious irritation for network admins as OS distributions update to
> newer OpenSSH versions (where most users get their OpenSSH).
>
> Ideally, it would be something easy to enable on the command line (e.g.
> a short option, not "-o WorkAroundBrokenScreenOS=1").  I'd be willing to
> work on a patch if there is some hope it might be accepted.
> --
> Chris Adams <cmadams at hiwaay.net>
> Systems and Network Administrator - HiWAAY Internet Services
> I don't speak for anybody but myself - that's enough trouble.
> _______________________________________________
> openssh-unix-dev mailing list
> openssh-unix-dev at mindrot.org
> https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev
>


More information about the openssh-unix-dev mailing list