Forum Discussion
coneill1
2 years agoProduct Team
Modernization of OpenSSH Plugin Coverage Background In an...
Modernization of OpenSSH Plugin Coverage Background In an effort to improve the accuracy and maintainability of our OpenSSH vulnerability coverage, Tenable Research has updated our plugins which d...
matwol
2 years agoConnect Contributor III
Dear @Conor O'Neill​ , we are observing a lot of new vulns with similar output (plugin id 187201):
Version source : SSH-2.0-OpenSSH_8.7
Installed version : 8.7
Fixed version : 9.6p1 / 9.6
while we have latest available version installed.
We are suspecting that this is a FP - can you confirm that there will be some tweaking of recent changes?
We are also registering a new case with the support.
- gazsi_ferenc2 years agoConnect Contributor II
Hello Mateusz!
We experienced the same in many OS distributions.
Do you have some resolution for the problem since then?
- gazsi_ferenc2 years agoConnect Contributor II
In the meantime Tenable updated the backport.inc file (/nessus/lib/nessus/plugins/backport.inc) in order to correct the backport version detection. As a result of this the number of the false positives are greatly reduced.