[maemo-developers] OpenSSH vulnerability and maemo extras upload accounts.

From: olle olle at nxs.se
Date: Tue May 20 10:41:41 EEST 2008
On Sat, May 17, 2008 at 11:26:44PM +0200, Loïc Minier wrote:
> > 
> > "then" being 0.9.8c-1 released 17 Sep 2006. If your key is older
> > than that you are not affected by this issue.
> 
>  You are if you used your keys with an affected OpenSSL.

No. If your key was generated before the bug was introduced, it is
most definately not affected. You could potentially still have a
problem if you use your (non predictable) key with a signature
scheme like DSA that needs randomness, though.

/olle

More information about the maemo-developers mailing list