cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3285
Views
0
Helpful
1
Replies

Updating openSSH version on CUCM 11.5

aniket0422
Level 1
Level 1

 

Hello Guys,

 

How can we update OpenSSH version in CUCM 11.5. 

 

Currently  OpenSSH version is 5.3 on CUCM 11.5 and Security team has identified vulnerability with this version and asking us to update it.

 

admin:show packages active openssh

Active Side Package(s): for openssh package(s)

openssh-5.3p1-123.el6_9.x86_64

openssh-server-5.3p1-123.el6_9.x86_64

openssh-clients-5.3p1-123.el6_9.x86_6

 

Even on CUCM 12.0 version is same.

1 Reply 1

Jonathan Schulenberg
Hall of Fame
Hall of Fame

You cannot update the RPM packages individually. Ask the security team for the CVE and see if Cisco has punlisted a PSIRT over it. The PSIRT typically lit’s the per-product CDETS that will show the fixed in version. If there isn’t one you may need to reach out to your Cisco AM/SE and ask them to get an answer from the BU. You could also try opening a TAC case with the CVE but I haven’t tried that before.