Fedora 21 : openssh-6.6.1p1-13.fc21 (2015-11067)
Medium Nessus Plugin ID 84688
SynopsisThe remote Fedora host is missing a security update.
DescriptionThis update brings security fix for two announced vulnerabilities.
Namely XSECURITY restrictions bypass under certain conditions AND weakness of agent locking (ssh-add -x) to password guessing (more info in related bugs). For more information see related bugs.
Note that Tenable Network Security has extracted the preceding description block directly from the Fedora security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.
SolutionUpdate the affected openssh package.