SSH2 RSA Padding bug - true or false?
Dear all SSH and WinSCP gurus,
I've recently come across the following snippet in one of my WinSCP3 logfiles:
<snip>
Server version: SSH-2.0-OpenSSH_3.1p1
We believe remote version has SSH2 RSA padding bug
</snip>
Now, the 'We believe....' part is what has me concerned....should I be? Where can I find more info on the 'SSH2 RSA padding bug' (hopefully a fix) and how is WinSCP determining that my server is vulnerable? TIA,
lnx.kid
*sorry if this is duplicate, I tried my best to search this forum and Google!
I've recently come across the following snippet in one of my WinSCP3 logfiles:
<snip>
Server version: SSH-2.0-OpenSSH_3.1p1
We believe remote version has SSH2 RSA padding bug
</snip>
Now, the 'We believe....' part is what has me concerned....should I be? Where can I find more info on the 'SSH2 RSA padding bug' (hopefully a fix) and how is WinSCP determining that my server is vulnerable? TIA,
lnx.kid
*sorry if this is duplicate, I tried my best to search this forum and Google!
_________________
kandah-mahnos-kandah
kandah-mahnos-kandah