CVE-2006-4924
CVE-2006-4924
sshd in OpenSSH before 4.4, when using the version 1 SSH protocol, allows remote attackers to cause a denial of service (CPU consumption) via an SSH packet that contains duplicate blocks, which is not properly handled by the CRC compensation attack detector.
Productos afectados
n/a · n/aPoCs públicas encontradas — 1
exploitdbwww.exploit-db.com/exploits/2444no verificado⚠ Recursos públicos, para evaluar la exposición de sistemas que controlas o estás autorizado a probar. Prueba solo con autorización.
¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-06:22.openssh.ascftp://ftp.sco.com/pub/unixware7/714/security/p534336/p534336.txtftp://patches.sgi.com/support/free/security/advisories/20061001-01-P.aschttp://blogs.sun.com/security/entry/sun_alert_102962_security_vulnerabilityhttp://bugs.gentoo.org/show_bug.cgi?id=148228http://docs.info.apple.com/article.html?artnum=305214http://itrc.hp.com/service/cki/docDisplay.do?docId=c00815112http://lists.apple.com/archives/security-announce/2007/Mar/msg00002.htmlhttp://marc.info/?l=openssh-unix-dev&m=115939141729160&w=2https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=207955http://secunia.com/advisories/21923http://secunia.com/advisories/22091