pkgsrc/security/openssh
taca e2e27a8148 Update openssh to 6.9.1 (OpenSSH 6.9p1) which contains security fix.
pkgsrc change:

* tcp_wrappers support was removed from release 6.7, but add it refering
  FreeBSD's ports.
* hpn-patch is also based on FreeBSD's ports.


Security
--------

 * ssh(1): when forwarding X11 connections with ForwardX11Trusted=no,
   connections made after ForwardX11Timeout expired could be permitted
   and no longer subject to XSECURITY restrictions because of an
   ineffective timeout check in ssh(1) coupled with "fail open"
   behaviour in the X11 server when clients attempted connections with
   expired credentials. This problem was reported by Jann Horn.

 * ssh-agent(1): fix weakness of agent locking (ssh-add -x) to
   password guessing by implementing an increasing failure delay,
   storing a salted hash of the password rather than the password
   itself and using a timing-safe comparison function for verifying
   unlock attempts. This problem was reported by Ryan Castellucci.

For more information, please refer release announce.

	http://www.openssh.com/txt/release-6.9
	http://www.openssh.com/txt/release-6.8
	http://www.openssh.com/txt/release-6.7
2015-07-09 16:14:23 +00:00
..
files Use sh not C comments in sh scripts. 2015-01-17 01:11:06 +00:00
patches Update openssh to 6.9.1 (OpenSSH 6.9p1) which contains security fix. 2015-07-09 16:14:23 +00:00
DESCR
distinfo Update openssh to 6.9.1 (OpenSSH 6.9p1) which contains security fix. 2015-07-09 16:14:23 +00:00
INSTALL
Makefile Update openssh to 6.9.1 (OpenSSH 6.9p1) which contains security fix. 2015-07-09 16:14:23 +00:00
MESSAGE.Interix
MESSAGE.pam
MESSAGE.urandom
options.mk Update openssh to 6.9.1 (OpenSSH 6.9p1) which contains security fix. 2015-07-09 16:14:23 +00:00
PLIST Update openssh to 6.6.1 (OpenSSH 6.6p1). 2014-03-29 09:38:11 +00:00