CVE-2015-4000 vulnerability persists post removing the weak Key Exchange algorithm
Applies to
Brocade switches
Issue
- Removing the weak Key exchange algorithm using
seccryptocfg --replace
command, does not remove the Exchange algorithm-diffie-hellman-group1-sha1
. -
As per
seccryptocfg --show
, diffie-hellman-group1-sha1 is not a part of it.
-
The algorithm is showing in
/etc/sshd_config.