Overview

Request 1133889 accepted

- update to 2.14.2 (bsc#1218165, CVE-2023-48795):
* Implemented "strict kex" support and other countermeasures to
* protect against the Terrapin Attack described in
CVE-2023-48795
* Fixed config parser to properly an optional equals delimiter
in all config arguments.
* Fixed TCP send error handling to avoid race condition when
receiving incoming disconnect message.
* Improved type signature in SSHConnection async context
manager.

Request History
Dirk Mueller's avatar

dirkmueller created request

- update to 2.14.2 (bsc#1218165, CVE-2023-48795):
* Implemented "strict kex" support and other countermeasures to
* protect against the Terrapin Attack described in
CVE-2023-48795
* Fixed config parser to properly an optional equals delimiter
in all config arguments.
* Fixed TCP send error handling to avoid race condition when
receiving incoming disconnect message.
* Improved type signature in SSHConnection async context
manager.


Factory Auto's avatar

factory-auto added opensuse-review-team as a reviewer

Please review sources


Factory Auto's avatar

factory-auto accepted review

Check script succeeded


Saul Goodman's avatar

licensedigger accepted review

ok


Ruediger Oertel's avatar

oertel accepted review

Accepted review for by_group opensuse-review-team request 1133889 from user factory-auto


Staging Bot's avatar

staging-bot added as a reviewer

Being evaluated by staging project "openSUSE:Factory:Staging:adi:32"


Staging Bot's avatar

staging-bot accepted review

Picked "openSUSE:Factory:Staging:adi:32"


Ana Guerrero's avatar

anag+factory accepted review

Staging Project openSUSE:Factory:Staging:adi:32 got accepted.


Ana Guerrero's avatar

anag+factory approved review

Staging Project openSUSE:Factory:Staging:adi:32 got accepted.


Ana Guerrero's avatar

anag+factory accepted request

Staging Project openSUSE:Factory:Staging:adi:32 got accepted.

openSUSE Build Service is sponsored by