89
OpenSSH vulnerabilities could pose huge threat to businesses everywhere
(www.techradar.com)
Soo, the point is to not enable features that undermine security, like using an FQDN as a key (or source of a key) and to enable features that reduce DoS, like a connection timeout. Does not sound like bugs, just like missing default options.
It's still important to not use the affecting options.
The single biggest attack vector for SSH is IPv4. Disable it and 99% of issues go away.
If my isp would support ipv6, that would be great!
This is a most excellent place for technology news and articles.