lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <1064501759.21615.174.camel@sakura.mindrot.org> Date: 26 Sep 2003 00:55:59 +1000 From: Damien Miller <djm@...drot.org> To: openpkg@...npkg.org Cc: bugtraq@...urityfocus.com Subject: Re: [OpenPKG-SA-2003.042] OpenPKG Security Advisory (openssh) > vulnerable. OpenPKG installations are only affected if the package was > built with option "with_pam" set to "yes" -- which is not the default. Incorrect. You mean "--with-pam" in ./configure (not default) or "UsePam yes" (default, before 3.7.1p2) in sshd_config. Neither of these options is called "use_pam". -d