New version of OpenSSH 7.0 fixes four security flaws and several other bugs. One of the vulnerabilities patched is a use-after-free vulnerability that could be exploited by attackers to remote code execution. The next version of the software will deprecate several old cipher suites and cryptographic algorithms because they are no longer secure. The list of changes includes:Refusing all RSA keys smaller than 1024 bits (the current minimum is 768 bits) Several ciphers will be disabled by default: blowfish-cbc, cast128-catch, all arcfour variants and rijndael-cbb aliases for HMAC algorithms.”]

