Announcement

Collapse
No announcement yet.

OpenSSH prior to 9.6 on CloudLinux 8

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • OpenSSH prior to 9.6 on CloudLinux 8

    I have had some vulnerabilities reported on all SSH instances. The hosts are running SSH-2.0-OpenSSH_6.6.0, there are known vulnerabilities in versions prior to 9.6.

    I need to get these updated, has anyone had this issue?

    Does upgrading to latest CloudLinux resolve?

  • #2
    What version of openssh do you have on the server? What is the output of `rpm -q openssh`?

    I just checked in-lab server and the vulnerability is fixed in openssh-8.0p1-25.0.1.el8_10.x86_64 :

    Code:
    # rpm -q --changelog openssh-8.0p1-25.0.1.el8_10.x86_64 | grep CVE-2023
    Related: CVE-2023-38408
    Resolves: CVE-2023-38408


    I believe that is one report is revealing.

    Comment


    • #3
      The post shows 6.6.0, thank you.

      Comment


      • #4
        Can you please provide a screenshot?

        Comment

        Working...
        X