Release Info

Advisory: CLSA-2024:1707919380

OS: CentOS 7 ELS

Public date: 2024-02-14 09:03:02

Project: openssh

Version: 7.4p1-23.el7_9.tuxcare.els2

Errata link: https://errata.tuxcare.com/centos7-els/CLSA-2024-1707919380.html

Changelog

- CVE-2023-48795: implement "strict key exchange" in ssh and sshd - Moved ELS patches to the top to avoid patch conflicts

Update

Update command: yum update openssh*

Packages list

openssh-7.4p1-23.el7_9.tuxcare.els2.x86_64.rpm openssh-askpass-7.4p1-23.el7_9.tuxcare.els2.x86_64.rpm openssh-cavs-7.4p1-23.el7_9.tuxcare.els2.x86_64.rpm openssh-clients-7.4p1-23.el7_9.tuxcare.els2.x86_64.rpm openssh-keycat-7.4p1-23.el7_9.tuxcare.els2.x86_64.rpm openssh-ldap-7.4p1-23.el7_9.tuxcare.els2.x86_64.rpm openssh-server-7.4p1-23.el7_9.tuxcare.els2.x86_64.rpm openssh-server-sysvinit-7.4p1-23.el7_9.tuxcare.els2.x86_64.rpm pam_ssh_agent_auth-0.10.3-2.23.el7_9.tuxcare.els2.i686.rpm pam_ssh_agent_auth-0.10.3-2.23.el7_9.tuxcare.els2.x86_64.rpm

CVEs

CVE-2023-48795