On Tue, 25 Apr 2023 at 03:36, Philip Prindeville <philipp_subx@xxxxxxxxxxxxxxxxxxxxx> wrote: > > On Apr 10, 2023, at 7:24 AM, Darren Tucker <dtucker@xxxxxxxxxxx> wrote: [...] > > Since you're using 9.1, the message could be an "Invalid free", since > > there was a double-free bug in that release :-( > > Forgot to ask: does this bug manifest at any particular time, or just connection initiation? > Because I can see it happen on a connection that's been up for days... either idle or experiencing heavy traffic... etc. Only at connection initiation, and only when the client is an old version of PuTTY that doesn't support the modern form of the diffie-hellman group exchange protocol. -- Darren Tucker (dtucker at dtucker.net) GPG key 11EAA6FA / A86E 3E07 5B19 5880 E860 37F4 9357 ECEF 11EA A6FA Good judgement comes with experience. Unfortunately, the experience usually comes from bad judgement. _______________________________________________ openssh-unix-dev mailing list openssh-unix-dev@xxxxxxxxxxx https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev