<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FTD OpenSSH &amp;lt; 9.8 RCE in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftd-openssh-lt-9-8-rce/m-p/5216073#M1117027</link>
    <description>&lt;P&gt;our Cisco FRP1120 has same problem, upgraded to 7.4.2 but still reporting the OpenSSH v9.1 bug CVE-2024-6387&lt;/P&gt;</description>
    <pubDate>Mon, 28 Oct 2024 10:01:58 GMT</pubDate>
    <dc:creator>GSIT1</dc:creator>
    <dc:date>2024-10-28T10:01:58Z</dc:date>
    <item>
      <title>FTD OpenSSH &lt; 9.8 RCE</title>
      <link>https://community.cisco.com/t5/network-security/ftd-openssh-lt-9-8-rce/m-p/5202465#M1116243</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;We have Cisco 1140 FTDs managed by FMC that are showing up in tenable with OpenSSH &amp;lt; 9.8 RCE vulnerabilities. The closest Cisco advisory I could find regarding this is this:&amp;nbsp;&lt;A href="https://www.cisco.com/c/en/us/support/docs/csa/cisco-sa-openssh-rce-2024.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/csa/cisco-sa-openssh-rce-2024.html&lt;/A&gt; and we have applied the 7.2.8.1 update to FMC and the FTDs and it is still showing up as having an OpenSSH version of 9.1. Is there a different fix for this?&lt;/P&gt;</description>
      <pubDate>Wed, 02 Oct 2024 16:13:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-openssh-lt-9-8-rce/m-p/5202465#M1116243</guid>
      <dc:creator>GilR</dc:creator>
      <dc:date>2024-10-02T16:13:11Z</dc:date>
    </item>
    <item>
      <title>Re: FTD OpenSSH &lt; 9.8 RCE</title>
      <link>https://community.cisco.com/t5/network-security/ftd-openssh-lt-9-8-rce/m-p/5216073#M1117027</link>
      <description>&lt;P&gt;our Cisco FRP1120 has same problem, upgraded to 7.4.2 but still reporting the OpenSSH v9.1 bug CVE-2024-6387&lt;/P&gt;</description>
      <pubDate>Mon, 28 Oct 2024 10:01:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-openssh-lt-9-8-rce/m-p/5216073#M1117027</guid>
      <dc:creator>GSIT1</dc:creator>
      <dc:date>2024-10-28T10:01:58Z</dc:date>
    </item>
    <item>
      <title>Re: FTD OpenSSH &lt; 9.8 RCE</title>
      <link>https://community.cisco.com/t5/network-security/ftd-openssh-lt-9-8-rce/m-p/5216134#M1117036</link>
      <description>&lt;P&gt;Cisco uses a custom fork of OpenSSH called CiscoSSH in their security products and is maintained and versioned separately than OpenSSH.&amp;nbsp; Vulnerability scanners do not do a proper job of detecting the "version" of CiscoSSH.&amp;nbsp; I would open a TAC case or work with your account team for an official answer but this could be a false positive.&amp;nbsp; Also why not 7.4.2.1?&lt;/P&gt;</description>
      <pubDate>Mon, 28 Oct 2024 12:00:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-openssh-lt-9-8-rce/m-p/5216134#M1117036</guid>
      <dc:creator>ahollifield</dc:creator>
      <dc:date>2024-10-28T12:00:23Z</dc:date>
    </item>
    <item>
      <title>Re: FTD OpenSSH &lt; 9.8 RCE</title>
      <link>https://community.cisco.com/t5/network-security/ftd-openssh-lt-9-8-rce/m-p/5216246#M1117045</link>
      <description>&lt;P&gt;As &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/199513"&gt;@ahollifield&lt;/a&gt; mentioned, Cisco's fork of OpenSSH fixes that vulnerability as of 7.4.2. Scanners will only pull the OpenSSH v9.1 version number on which CiscoSSH is based and not distinguish Cisco's fixes that are applied to that code branch.&lt;/P&gt;
&lt;P&gt;Reference confirming the fix: &lt;A href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-openssh-rce-2024" target="_blank"&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-openssh-rce-2024&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Also agree that you should patch to 7.4.2.1 for a few additional bug and vulnerability fixes.&lt;/P&gt;</description>
      <pubDate>Mon, 28 Oct 2024 15:48:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-openssh-lt-9-8-rce/m-p/5216246#M1117045</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2024-10-28T15:48:36Z</dc:date>
    </item>
  </channel>
</rss>

