Here's the CERT alert: https://www.us-cert.gov/ncas/current-activity/2016... Here you can find more information on the problem: https://www.kb.cert.org/vuls/id/456088
- Here are the full release notes from the patch from OpenSSH: http://www.openssh.com/txt/release-7.1p2
Analysts say this about the bug ...
"The OpenSSH client code between 5.4 and 7.1 contains experimental support for resuming SSH-connections (roaming).