FYI: fix for big-endian systems pushed to V_9_9 branch

Damien Miller djm at mindrot.org
Sun Oct 27 15:45:33 AEDT 2024


Hi,

This is mostly a note for downstream distributors of OpenSSH. I've
just pushed fixes to the V_9_9 stable branch for a bug in the
mlkem768x25519-sha256 key exchange algorithm that was added in this
release that causes connection failures when connecting between
big-endian and little-endian hosts.

The problem is on the big-endian side. No change is required for
the more common little-endian architectures (e.g. x86, ARM).

If you distribute OpenSSH to big-endian systems and have packaged
OpenSSH 9.9 already, then I recommend you include these fixes as the
next release of OpenSSH will make this key exchange algorithm the
default.

Thanks,
Damien
-------------- next part --------------
An embedded message was scrubbed...
From: git+noreply at mindrot.org
Subject: [openssh-commits] [openssh] branch V_9_9 updated (19bcb2d9 -> 33c5f384)
Date: Sun, 27 Oct 2024 15:37:01 +1100
Size: 4551
URL: <http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20241027/f6444af8/attachment.eml>


More information about the openssh-unix-dev mailing list