You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@mina.apache.org by "Goldstein Lyor (JIRA)" <ji...@apache.org> on 2016/01/21 12:59:39 UTC

[jira] [Resolved] (SSHD-624) Client side public key authentication should validate SSH_MSG_USERAUTH_PK_OK message data

     [ https://issues.apache.org/jira/browse/SSHD-624?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Goldstein Lyor resolved SSHD-624.
---------------------------------
    Resolution: Fixed

> Client side public key authentication should validate SSH_MSG_USERAUTH_PK_OK message data
> -----------------------------------------------------------------------------------------
>
>                 Key: SSHD-624
>                 URL: https://issues.apache.org/jira/browse/SSHD-624
>             Project: MINA SSHD
>          Issue Type: Bug
>            Reporter: Goldstein Lyor
>            Assignee: Goldstein Lyor
>            Priority: Minor
>             Fix For: 1.2.0
>
>
> The current code that handles the SSH_MSG_USERAUTH_PK_OK message does not make sure that the server echo-ed the same key information as originally sent and assumes this is indeed the case.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)