<a href="http://www.securityfocus.com/brief/739">http://www.securityfocus.com/brief/739</a><br><br><a href="http://blog.drinsama.de/erich/en/linux/2008051401-consequences-of-sslssh-weakness.html">http://blog.drinsama.de/erich/en/linux/2008051401-consequences-of-sslssh-weakness.html</a><br>
<br>This affects debian and all derived distributions for the time period stated in the blog post.<br><br>In short, update your openssl package, regenerate your sshd's host keys, and regenerate your ssh keypairs used for authentication.<br>
<br>I would add that it doesn't hurt to get new versions of any affected livecd distros you have lying around.<br><br>Jason<br><br>