update #2:There's another bug found in 3.7. You'll have to upgrade to 3.7.1. Read this: http://www.openssh.org/txt/buffer.adv
update:OpenSSH confirmed a bug in all versions before 3.7 (released today). It's unclear if the bug is exploitable. /update

According to slashdot.org, there's a new SSH bug which has been exploited. The page slashdot links to seems to be suffering the slashdot effect, thus being unreachable. Who has more information on this bug and/or exploit?