Does nss security update - CVE-2014-1568 - affect OpenSSH
Issue
The nss bug CVE-2014-1568 (https://rhn.redhat.com/rhn/errata/details/Details.do?eid=27939)(RSA PKCS#1 signature verification forgery flaw ), affects applications using the nss library. It affects the application which uses the PKCS #1 version.
OpenSSH uses the nss library and RSA algorithm. Is the ssh affected with this bug? How do I check which PKCS # is using by OpenSSH?
Environment
Red Hat Enterprise Linux 5, 6, 7
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.