01-05-2025 05:36 PM
I need to close an audit observation. My CISCO ISE platform has server version 3.2.0.542 path 3.5 and Cisco ISE version 3.2.0.401.
It has been detected that the OpenSSH version installed on the asset is older than 9.8. This version has two security holes described below: Vulnerability in sshd(8) which affects OpenSSH versions between 8.5p1 and 9.7p1. A race condition bug in sshd(8) could allow arbitrary code execution with root privileges. Logic bug in ssh(1) affects OpenSSH between versions 9.5 and 9.7.
Which version do you recommend upgrading?
Solved! Go to Solution.
01-05-2025 08:39 PM - edited 01-05-2025 08:40 PM
Refer to the bug in the post, it has version with known fix, it was last modified on Dec 31 2024
01-05-2025 08:39 PM - edited 01-05-2025 08:40 PM
Refer to the bug in the post, it has version with known fix, it was last modified on Dec 31 2024
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide