Skip to main content

openssh privileged escalation vuln

Comments

3 comments

  • ffeingol
    Assuming this is a RedHat/CentOS system, lots of the CVE's are backported in, but the version is not updated. Try this to check: rpm -q --changelog openssh | egrep CVE-2021-41617
    It should be patched, but there is not much that cPanel can do, as OpenSSH is a OS provided package, not a cPanel provided one.
    0
  • vpswing
    You're right, it is patched! Thanks for your input, appreciate it!
    0
  • cPRex Jurassic Moderator
    Thanks @ffeingol - @vpswing, that's usually how the system gets updated. I'll also add that it's important to *never* try and update openssh or openssl on a server to anything outside of what is available in Yum, as that will cause stability issues for the system.
    0

Please sign in to leave a comment.