<br><br><div class="gmail_quote">On Wed, Aug 3, 2011 at 4:17 PM, Vinay Nagrik <span dir="ltr"><<a href="mailto:vnagrik@gmail.com">vnagrik@gmail.com</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex;">
<br><div>The reason we want to do it because there are many vulnerabilities in older versions of openssh.  Few are listed below.</div></blockquote><div>Have you checked these against the rh security database? I'd be willing to bet that they've all been addressed via backported security fixes.<br>
<br>You should probably read over<br><a href="https://access.redhat.com/security/updates/backporting/?sc_cid=3093">https://access.redhat.com/security/updates/backporting/?sc_cid=3093</a><br><br>and then search the CVE's against <br>
<br><a href="http://www.redhat.com/security/data/cve/">http://www.redhat.com/security/data/cve/</a><br><br></div></div>-- <br>During times of universal deceit, telling the truth becomes a revolutionary act.<br>George Orwell<br>