The OpenSSH vulnerability and the disclosure process
Posted Jul 4, 2002 8:24 UTC (Thu) by
edmundo (guest, #616)
In reply to:
The OpenSSH vulnerability and the disclosure process by beejaybee
Parent article:
The OpenSSH vulnerability and the disclosure process
"withdrawing SSH would only encourage the deployment of other
protocols (telnet, ftp, rcp, rlogin etc) which by their very nature
are more risky than SSH"
I'm not sure about that: telnet is vulnerable to packet sniffing, but
at least a bug-free telnetd is safe against worms and script kiddies.
By the way, there is at least one alternative implementation of sshd:
http://www.net.lut.ac.uk/psst/
(
Log in to post comments)