AIX 5.8p1?

Ty Haller THaller at sefcu.com
Fri Sep 21 01:42:36 EST 2012


Good Morning,

We just performed some security scanning on one of our AIX systems and these vulnerabilities was returned:

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4755
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-5000



We are currently running: 5.8.0.6101


The latest on IBMs Website<https://www14.software.ibm.com/webapp/iwm/web/reg/download.do?source=aixbp&lang=en_US&S_PKG=openssh&cp=UTF-8> is 5.8p1 (5.8.0.6202), does this address the above vulnerabilities? I'm having trouble locating change logs between these two versions.


IBMs readme<https://www6.software.ibm.com/sdfdl/2v2/regs2/sihourn/openssh/Xa.2/Xb.YpX6IhcfCLTVpsjWMhdhZIbI9rXXMpck6RkO-ayBjQ/Xc.openssh/Readme_5.8.0.6102.txt/Xd./Xf.LPr.AAvi/Xg.6692599/Xi.aixbp/XY.regsrvs/XZ.4gNj28KKlrh5yUcStvOhzTVtLmI/Readme_5.8.0.6102.txt> for 5.8p1 does not mention these CVEs.


Thanks,


Ty Haller | Lead Administrator - System Services | SEFCU | thaller at sefcu.com
700 Patroon Creek Blvd. Albany, NY 12206 | Phone: 518-464-5210 | Fax: 518-464-5209

This message may contain confidential information and is intended for the sole purpose of communication with the addressee. Dissemination or publication in any format is strictly prohibited. If you have received this communication in error please notify SEFCU immediately.

Help save a tree. Please print this e-mail only if it is truly necessary. Thank you.


More information about the openssh-unix-dev mailing list