Are all Debian 11 systems automatically vulnerable to CVE-2023-38408?
2
votes
1
answer
2780
views
I really really hope I'm wrong here, but it seems that Debian 11 has a vulnerable version of OpenSSH.
My OpenSSH banner reports my OpenSSH version is:
8.4p1 Debian 5+deb11u1
I checked with sshd and it reports the same version.
According to this CVE-2023-38408 ANY version before 9.3p2 is vulnerable.
I tried sudo apt update && sudo apt full-upgrade
but it did not update the OpenSSH version..
Asked by Sir Muffington
(1306 rep)
Aug 13, 2023, 01:49 PM
Last activity: Aug 17, 2023, 12:38 PM
Last activity: Aug 17, 2023, 12:38 PM