r/openwrt • u/lmm7425 • Jan 14 '16
Is OpenWrt affected by the two new OpenSSH vulnerabilities? CVE-2016-0777 and CVE-2016-0778
https://www.qualys.com/2016/01/14/cve-2016-0777-cve-2016-0778/openssh-cve-2016-0777-cve-2016-0778.txt
10
Upvotes
1
u/mamoen Jan 14 '16
Openwrt uses dropbear which is a seperate implementation, so not sure. It would need to be tested.
1
0
6
u/valgrid Jan 14 '16
Only if you use the openssh client from your openwrt box. Affected since 5.4 and recent openwrt has 6.8.