Just came across this new vulnerability but couldn't find a discussion here. I have tried sudoedit -s / to check this on a random cPanel server with CentOS 7 and it does...
I have an issue on a VPS that I would like to resolve for a very low traffic website.
When tailing a low traffic website in SSH, the domlog does not update in real time, it waits until 17 files are accessed then it processes it. I guess this would be called a buffer and I would like to know...
I can't find anything about how to change that 64kb buffer in https / ssl
in http:// work just fine using fcgid or suphp
header('Content-Type: text/plain; charset=utf-8');
Looking through my last referrers, i see a lot of these on a day to day basis.
Http Code : 349
The above is serverly truncated as the one used is to large to post.
Repost from RS forums
OpenSSH Buffer Exploit
There have been several reports of a new ssh bug, with an exploit seemingly in the wild.
1. Versions affected:
All versions of OpenSSH's sshd prior to 3.7 contain a buffer management error. The attack makes an enormous...