Support for the "strict kex" SSH extension has been backported to AsyncSSH (a Python implementation of the SSHv2 protocol) as hardening against the Terrapin attack.
https://security-tracker.debian.org/tracker/DSA-5750-1
Continue reading...
https://security-tracker.debian.org/tracker/DSA-5750-1
Continue reading...

