Subject: Re: Fwd: OpenSSH UseLogin proof of concept exploit
To: None <ian@WPI.EDU>
From: Emre Yildirim <emre.yildirim@us.army.mil>
List: netbsd-users
Date: 12/06/2001 12:55:22
> Also, what is the purpose of UseLogin?
From man sshd(8):
UseLogin
Specifies whether login(1) is used for interactive login ses-
sions. The default is ``no''. Note that login(1) is never used
for remote command execution. Note also, that if this is en-
abled, X11Forwarding will be disabled because login(1) does not
know how to handle xauth(1) cookies.