Security Advisory Low: openssh security, bug fix, and enhancement update

Advisory: RHSA-2013:1591-2
Type: Security Advisory
Severity: Low
Issued on: 2013-11-21
Last updated on: 2013-11-21
Affected Products: Red Hat Enterprise Linux Desktop (v. 6)
Red Hat Enterprise Linux HPC Node (v. 6)
Red Hat Enterprise Linux Server (v. 6)
Red Hat Enterprise Linux Workstation (v. 6)
CVEs (cve.mitre.org): CVE-2010-5107

Details

Updated openssh packages that fix one security issue, several bugs, and add
various enhancements are now available for Red Hat Enterprise Linux 6.

The Red Hat Security Response Team has rated this update as having low
security impact. A Common Vulnerability Scoring System (CVSS) base score,
which gives a detailed severity rating, is available from the CVE link in
the References section.

OpenSSH is OpenBSD's Secure Shell (SSH) protocol implementation.
These packages include the core files necessary for the OpenSSH client
and server.

The default OpenSSH configuration made it easy for remote attackers to
exhaust unauthorized connection slots and prevent other users from being
able to log in to a system. This flaw has been addressed by enabling random
early connection drops by setting MaxStartups to 10:30:100 by default.
For more information, refer to the sshd_config(5) man page. (CVE-2010-5107)

These updated openssh packages include numerous bug fixes and enhancements.
Space precludes documenting all of these changes in this advisory.
Users are directed to the Red Hat Enterprise Linux 6.5 Technical Notes,
linked to in the References, for information on the most significant of
these changes.

All openssh users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues and add
these enhancements.


Solution

Before applying this update, make sure all previously-released errata
relevant to your system have been applied.

This update is available via the Red Hat Network. Details on how to
use the Red Hat Network to apply this update are available at
https://access.redhat.com/site/articles/11258

Updated packages

Red Hat Enterprise Linux Desktop (v. 6)

SRPMS:
openssh-5.3p1-94.el6.src.rpm
File outdated by:  RHBA-2015:1335
    MD5: 9e860c0149365e74d823c94816d078a8
SHA-256: fbcdd5b5604eed9f3ef7d2daf73a183e3de4fd9efd3a46ec05bd16d2b84b816d
 
IA-32:
openssh-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 19a64c2319bf3aaba0f5bbccfc752632
SHA-256: e75dc34eedbe89e9305145b330043b41ae60b77f515ee8856c7fad50b79de3cd
openssh-askpass-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: b8e671612419966770217b06457bfc39
SHA-256: 84c3f1e9217e6a18e2d7af5d3db40c0a980bfefa6b443a1dbceec91d504b2516
openssh-clients-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: e5118a59947c2be24622bc39d41cb225
SHA-256: 3ab05132916d7923ef340f36e4094c325d4676ec9802f843a9d8cb1b45c6bae1
openssh-debuginfo-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 2d9306895648cda4b860d3476f2c58bf
SHA-256: 151f2533c62ab3ba3f4f13118aa90a69c23380ef7cb8940653d54edcf65629ec
openssh-ldap-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 12d68f228e427808c2cf271167904dcc
SHA-256: 85257fcf304e1302380342112715d1c40dd9cea01f36fbc390f6743a303da76c
openssh-server-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 7087b101e9ef54c87a78059fed2e7304
SHA-256: 418361fda4b63123d5a53a902dde81b74787da118c6577b96d87a4549bbed58d
pam_ssh_agent_auth-0.9.3-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 6a37af648832d161f82a7a42bbd5a69d
SHA-256: 230c438f04871ad09c243bdb54f7896114f3fafcb06fbb1ea86e8fa67cda697c
 
x86_64:
openssh-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 8f8f07dd0a6464e3b9a1cdab85274ea2
SHA-256: 59fdb1b2656a9a61817ba6ad9119c400e8692019ca0ccf1383eefb4ee047736f
openssh-askpass-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 1f28095f08ffc83c85ef8e7d7d36fbc8
SHA-256: 50b04c9ac8d2bc237dab7d9b07824804108f054a7fe884bc3437687eb905a7d8
openssh-clients-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: e88efe2eed576b6c4eaaff58f8fce405
SHA-256: 4a431c8c197b94cc9ee3a1bce7915430b5466c83589a17292f4156b6667c9b15
openssh-debuginfo-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 2d9306895648cda4b860d3476f2c58bf
SHA-256: 151f2533c62ab3ba3f4f13118aa90a69c23380ef7cb8940653d54edcf65629ec
openssh-debuginfo-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 5d6e120ed66f2736ba85c18c297a0028
SHA-256: 00a5941bb78a3e0058d50b9d7b7bd364ebab37d265cc976a2dc5d9e7b51063c7
openssh-ldap-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 5dacc258585320ecbfdcd24489b963f8
SHA-256: 5dfb08b824ab631ae782bfd170a19e0386831565c5c2ed61cad36a23144cf56c
openssh-server-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 5827d4dcf3edee70494ae69fb3ed2a05
SHA-256: f1ce7c006cee5c02dac882e25598797af202f4d762025aef19c4ea01be3ddd11
pam_ssh_agent_auth-0.9.3-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 6a37af648832d161f82a7a42bbd5a69d
SHA-256: 230c438f04871ad09c243bdb54f7896114f3fafcb06fbb1ea86e8fa67cda697c
pam_ssh_agent_auth-0.9.3-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 44f674707bb5a97c67516c5bc9acb2ba
SHA-256: 21b3b8fe2ebad40be9d483640e1dae6aa02fc24a7cb798ee83340b0678f4850b
 
Red Hat Enterprise Linux HPC Node (v. 6)

SRPMS:
openssh-5.3p1-94.el6.src.rpm
File outdated by:  RHBA-2015:1335
    MD5: 9e860c0149365e74d823c94816d078a8
SHA-256: fbcdd5b5604eed9f3ef7d2daf73a183e3de4fd9efd3a46ec05bd16d2b84b816d
 
x86_64:
openssh-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 8f8f07dd0a6464e3b9a1cdab85274ea2
SHA-256: 59fdb1b2656a9a61817ba6ad9119c400e8692019ca0ccf1383eefb4ee047736f
openssh-askpass-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 1f28095f08ffc83c85ef8e7d7d36fbc8
SHA-256: 50b04c9ac8d2bc237dab7d9b07824804108f054a7fe884bc3437687eb905a7d8
openssh-clients-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: e88efe2eed576b6c4eaaff58f8fce405
SHA-256: 4a431c8c197b94cc9ee3a1bce7915430b5466c83589a17292f4156b6667c9b15
openssh-debuginfo-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 2d9306895648cda4b860d3476f2c58bf
SHA-256: 151f2533c62ab3ba3f4f13118aa90a69c23380ef7cb8940653d54edcf65629ec
openssh-debuginfo-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 5d6e120ed66f2736ba85c18c297a0028
SHA-256: 00a5941bb78a3e0058d50b9d7b7bd364ebab37d265cc976a2dc5d9e7b51063c7
openssh-ldap-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 5dacc258585320ecbfdcd24489b963f8
SHA-256: 5dfb08b824ab631ae782bfd170a19e0386831565c5c2ed61cad36a23144cf56c
openssh-server-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 5827d4dcf3edee70494ae69fb3ed2a05
SHA-256: f1ce7c006cee5c02dac882e25598797af202f4d762025aef19c4ea01be3ddd11
pam_ssh_agent_auth-0.9.3-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 6a37af648832d161f82a7a42bbd5a69d
SHA-256: 230c438f04871ad09c243bdb54f7896114f3fafcb06fbb1ea86e8fa67cda697c
pam_ssh_agent_auth-0.9.3-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 44f674707bb5a97c67516c5bc9acb2ba
SHA-256: 21b3b8fe2ebad40be9d483640e1dae6aa02fc24a7cb798ee83340b0678f4850b
 
Red Hat Enterprise Linux Server (v. 6)

SRPMS:
openssh-5.3p1-94.el6.src.rpm
File outdated by:  RHBA-2015:1335
    MD5: 9e860c0149365e74d823c94816d078a8
SHA-256: fbcdd5b5604eed9f3ef7d2daf73a183e3de4fd9efd3a46ec05bd16d2b84b816d
 
IA-32:
openssh-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 19a64c2319bf3aaba0f5bbccfc752632
SHA-256: e75dc34eedbe89e9305145b330043b41ae60b77f515ee8856c7fad50b79de3cd
openssh-askpass-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: b8e671612419966770217b06457bfc39
SHA-256: 84c3f1e9217e6a18e2d7af5d3db40c0a980bfefa6b443a1dbceec91d504b2516
openssh-clients-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: e5118a59947c2be24622bc39d41cb225
SHA-256: 3ab05132916d7923ef340f36e4094c325d4676ec9802f843a9d8cb1b45c6bae1
openssh-debuginfo-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 2d9306895648cda4b860d3476f2c58bf
SHA-256: 151f2533c62ab3ba3f4f13118aa90a69c23380ef7cb8940653d54edcf65629ec
openssh-ldap-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 12d68f228e427808c2cf271167904dcc
SHA-256: 85257fcf304e1302380342112715d1c40dd9cea01f36fbc390f6743a303da76c
openssh-server-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 7087b101e9ef54c87a78059fed2e7304
SHA-256: 418361fda4b63123d5a53a902dde81b74787da118c6577b96d87a4549bbed58d
pam_ssh_agent_auth-0.9.3-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 6a37af648832d161f82a7a42bbd5a69d
SHA-256: 230c438f04871ad09c243bdb54f7896114f3fafcb06fbb1ea86e8fa67cda697c
 
PPC:
openssh-5.3p1-94.el6.ppc64.rpm
File outdated by:  RHBA-2015:1335
    MD5: ce254a5e5f14ab66e6638b10f3183fbe
SHA-256: 1c6ec7bb28319b563cc1f0f93eba4579ba7b26beac1a1774a3b04c47f7497632
openssh-askpass-5.3p1-94.el6.ppc64.rpm
File outdated by:  RHBA-2015:1335
    MD5: be9e53fab34100c8df54e8034f057734
SHA-256: 6b6fa05eccac8289704f3b52b7e6527a648e82c741cea99649c6fab4bf48e709
openssh-clients-5.3p1-94.el6.ppc64.rpm
File outdated by:  RHBA-2015:1335
    MD5: c8e1d7788b1f933a0afb066356571e5d
SHA-256: 6476bafbf237c637072e88f33d1b1d9040b5b0909646dd54b8ec5f28b4461628
openssh-debuginfo-5.3p1-94.el6.ppc.rpm
File outdated by:  RHBA-2015:1335
    MD5: 4eb99dc6f7e8c4a06a57eac995674e73
SHA-256: 359f5c0d0aff4f174ac676a2aa3fedf1484545154395b665407c2c075fb6ed20
openssh-debuginfo-5.3p1-94.el6.ppc64.rpm
File outdated by:  RHBA-2015:1335
    MD5: f017d4982f1de6c5a0a7ff8cce5430c4
SHA-256: 6659e3c9dc41d9fabb8f5b48c89775d8f1a883d05d1223373edd77d68a4e1865
openssh-ldap-5.3p1-94.el6.ppc64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 68e6d84856be9bb5961222e86e12b007
SHA-256: 0217a4f8d3118c2b47d8b176a8de93322e0accf86c2cee8c601b283381890d95
openssh-server-5.3p1-94.el6.ppc64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 6f38ab1984a4a0029afab7782874de95
SHA-256: fcde4a9d4c1783067d76d6346f21b3a5058840d3464417509aa7f1026f249453
pam_ssh_agent_auth-0.9.3-94.el6.ppc.rpm
File outdated by:  RHBA-2015:1335
    MD5: 00b927e5471b96872b2e79a7e62b663c
SHA-256: 78523ff423ba4439483f116279866e96ef527ee27f24ebce072bbf594eb1fa20
pam_ssh_agent_auth-0.9.3-94.el6.ppc64.rpm
File outdated by:  RHBA-2015:1335
    MD5: b3d76a8f49614ce18d8f4d8b4b630d98
SHA-256: 9909c35cfca5a5884b4ee832dddecfb11d4cedd3874927cb314d3f606302c10f
 
s390x:
openssh-5.3p1-94.el6.s390x.rpm
File outdated by:  RHBA-2015:1335
    MD5: 72a78ff5773a615e223ad3b19f0e8447
SHA-256: 63aeebf8d9dfac4d49d023c85e1bff304cb53971b319abcaf21b1b2fc7d1b013
openssh-askpass-5.3p1-94.el6.s390x.rpm
File outdated by:  RHBA-2015:1335
    MD5: 7e00eca86f77a6b6306588b7065ded16
SHA-256: b4e76cb9a220a19e2eee19f33b197e5b41de3addc577642d1adc4a3dc3c934a5
openssh-clients-5.3p1-94.el6.s390x.rpm
File outdated by:  RHBA-2015:1335
    MD5: 908130c94aca85618816b0dca3958f41
SHA-256: ed99554aac7e2a7928c1fb28eeb87e027412a8ed5abe3f9b6280d94acaf9716a
openssh-debuginfo-5.3p1-94.el6.s390.rpm
File outdated by:  RHBA-2015:1335
    MD5: 62a039c4e036e0755bd4e63201440792
SHA-256: ecab8765f927ac8312c286386f96e812e349e6d92c72d5724540a6bd67821df2
openssh-debuginfo-5.3p1-94.el6.s390x.rpm
File outdated by:  RHBA-2015:1335
    MD5: 9672e409484dd4420884fdfc3f2df0e1
SHA-256: 2423555b0f952d83bc7ced6021d003a08d1c9e85a3c028283f95fa613588b318
openssh-ldap-5.3p1-94.el6.s390x.rpm
File outdated by:  RHBA-2015:1335
    MD5: 53a1ee2f2d1ceb0941e77f5b89675ef3
SHA-256: 5290b26c720ba241818e8e75559a3453900bce2a2c352ef2f0ef85433f0abe80
openssh-server-5.3p1-94.el6.s390x.rpm
File outdated by:  RHBA-2015:1335
    MD5: 61fe2dc703a1db67a865726207973964
SHA-256: 103835bacc37bb544ff7449cc4eb9b73afc5806dfda5d52b5816756c710188bd
pam_ssh_agent_auth-0.9.3-94.el6.s390.rpm
File outdated by:  RHBA-2015:1335
    MD5: e467e6b1e2060db239d07c18146d3631
SHA-256: 1f6c2f873b2bf922e2cf4593a31b25f2fe618a74b2672550ebe62cf14262c95f
pam_ssh_agent_auth-0.9.3-94.el6.s390x.rpm
File outdated by:  RHBA-2015:1335
    MD5: 5606d19160136ef005ae86d5c1de2aac
SHA-256: 6f49227bde658a6368b072fe6e9fbee74efec97e87590d96a628e81848a6eb7a
 
x86_64:
openssh-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 8f8f07dd0a6464e3b9a1cdab85274ea2
SHA-256: 59fdb1b2656a9a61817ba6ad9119c400e8692019ca0ccf1383eefb4ee047736f
openssh-askpass-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 1f28095f08ffc83c85ef8e7d7d36fbc8
SHA-256: 50b04c9ac8d2bc237dab7d9b07824804108f054a7fe884bc3437687eb905a7d8
openssh-clients-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: e88efe2eed576b6c4eaaff58f8fce405
SHA-256: 4a431c8c197b94cc9ee3a1bce7915430b5466c83589a17292f4156b6667c9b15
openssh-debuginfo-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 2d9306895648cda4b860d3476f2c58bf
SHA-256: 151f2533c62ab3ba3f4f13118aa90a69c23380ef7cb8940653d54edcf65629ec
openssh-debuginfo-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 5d6e120ed66f2736ba85c18c297a0028
SHA-256: 00a5941bb78a3e0058d50b9d7b7bd364ebab37d265cc976a2dc5d9e7b51063c7
openssh-ldap-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 5dacc258585320ecbfdcd24489b963f8
SHA-256: 5dfb08b824ab631ae782bfd170a19e0386831565c5c2ed61cad36a23144cf56c
openssh-server-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 5827d4dcf3edee70494ae69fb3ed2a05
SHA-256: f1ce7c006cee5c02dac882e25598797af202f4d762025aef19c4ea01be3ddd11
pam_ssh_agent_auth-0.9.3-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 6a37af648832d161f82a7a42bbd5a69d
SHA-256: 230c438f04871ad09c243bdb54f7896114f3fafcb06fbb1ea86e8fa67cda697c
pam_ssh_agent_auth-0.9.3-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 44f674707bb5a97c67516c5bc9acb2ba
SHA-256: 21b3b8fe2ebad40be9d483640e1dae6aa02fc24a7cb798ee83340b0678f4850b
 
Red Hat Enterprise Linux Workstation (v. 6)

SRPMS:
openssh-5.3p1-94.el6.src.rpm
File outdated by:  RHBA-2015:1335
    MD5: 9e860c0149365e74d823c94816d078a8
SHA-256: fbcdd5b5604eed9f3ef7d2daf73a183e3de4fd9efd3a46ec05bd16d2b84b816d
 
IA-32:
openssh-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 19a64c2319bf3aaba0f5bbccfc752632
SHA-256: e75dc34eedbe89e9305145b330043b41ae60b77f515ee8856c7fad50b79de3cd
openssh-askpass-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: b8e671612419966770217b06457bfc39
SHA-256: 84c3f1e9217e6a18e2d7af5d3db40c0a980bfefa6b443a1dbceec91d504b2516
openssh-clients-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: e5118a59947c2be24622bc39d41cb225
SHA-256: 3ab05132916d7923ef340f36e4094c325d4676ec9802f843a9d8cb1b45c6bae1
openssh-debuginfo-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 2d9306895648cda4b860d3476f2c58bf
SHA-256: 151f2533c62ab3ba3f4f13118aa90a69c23380ef7cb8940653d54edcf65629ec
openssh-ldap-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 12d68f228e427808c2cf271167904dcc
SHA-256: 85257fcf304e1302380342112715d1c40dd9cea01f36fbc390f6743a303da76c
openssh-server-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 7087b101e9ef54c87a78059fed2e7304
SHA-256: 418361fda4b63123d5a53a902dde81b74787da118c6577b96d87a4549bbed58d
pam_ssh_agent_auth-0.9.3-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 6a37af648832d161f82a7a42bbd5a69d
SHA-256: 230c438f04871ad09c243bdb54f7896114f3fafcb06fbb1ea86e8fa67cda697c
 
x86_64:
openssh-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 8f8f07dd0a6464e3b9a1cdab85274ea2
SHA-256: 59fdb1b2656a9a61817ba6ad9119c400e8692019ca0ccf1383eefb4ee047736f
openssh-askpass-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 1f28095f08ffc83c85ef8e7d7d36fbc8
SHA-256: 50b04c9ac8d2bc237dab7d9b07824804108f054a7fe884bc3437687eb905a7d8
openssh-clients-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: e88efe2eed576b6c4eaaff58f8fce405
SHA-256: 4a431c8c197b94cc9ee3a1bce7915430b5466c83589a17292f4156b6667c9b15
openssh-debuginfo-5.3p1-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 2d9306895648cda4b860d3476f2c58bf
SHA-256: 151f2533c62ab3ba3f4f13118aa90a69c23380ef7cb8940653d54edcf65629ec
openssh-debuginfo-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 5d6e120ed66f2736ba85c18c297a0028
SHA-256: 00a5941bb78a3e0058d50b9d7b7bd364ebab37d265cc976a2dc5d9e7b51063c7
openssh-ldap-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 5dacc258585320ecbfdcd24489b963f8
SHA-256: 5dfb08b824ab631ae782bfd170a19e0386831565c5c2ed61cad36a23144cf56c
openssh-server-5.3p1-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 5827d4dcf3edee70494ae69fb3ed2a05
SHA-256: f1ce7c006cee5c02dac882e25598797af202f4d762025aef19c4ea01be3ddd11
pam_ssh_agent_auth-0.9.3-94.el6.i686.rpm
File outdated by:  RHBA-2015:1335
    MD5: 6a37af648832d161f82a7a42bbd5a69d
SHA-256: 230c438f04871ad09c243bdb54f7896114f3fafcb06fbb1ea86e8fa67cda697c
pam_ssh_agent_auth-0.9.3-94.el6.x86_64.rpm
File outdated by:  RHBA-2015:1335
    MD5: 44f674707bb5a97c67516c5bc9acb2ba
SHA-256: 21b3b8fe2ebad40be9d483640e1dae6aa02fc24a7cb798ee83340b0678f4850b
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

908707 - CVE-2010-5107 openssh: Prevent connection slot exhaustion attacks
974096 - Kerberos ticket forwarding does not work if /tmp is polyinstantiated


References



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/