Can we update openssh 5.3 to openssh 7.4 on redhat EL6.7

Latest response

Hi,
Please advice can we update openssh 5.3 to openssh 7.4 on redhat EL6.7
And does redhat support the uppdate?

By the way.
Our security Scan has identified some issue with the openssh (version 5.3P1) installed on our systems. (CVE-2015-5600,CVE-2014-1692,CVE-2014-2532,CVE-2010-5107and so on)
We need to update the openssh to 7.4 or greater.

Regards

Responses

Apparently Red Hat only supports Packages inside their Software Channels for the specific Release. Please be advised that you can find Information about the CVE's under https://access.redhat.com/security/security-updates/#/cve. Most of the Security Patches are back ported by Red Hat without modifying the Major & Minor Version String of the affected Package.

For example CVE-2015-5600: "This issue does not affect the default OpenSSH sshd configuration in Red Hat Enterprise Linux 4, 5, 6 and 7" You wold need to check every CVE that has been detected by your Scanning Engine manually and take further steps as advised by Red Hat.

Hell Steven

Thanks for you response. I got it. I will check the CVE that has been detected by the Scanning Engine manually and find which patch i should install according Redhat.

Regards!

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.