Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Gain root remotely >> Dropbear remote DSS SSH vuln


Vulnerability Assessment Details

Dropbear remote DSS SSH vuln

Vulnerability Assessment Summary
Dropbear remote DSS SSH vuln check

Detailed Explanation for this Vulnerability Assessment

The remote host is running Dropbear prior to version 0.43.
There is a flaw in this version of Dropbear which would
enable a remote attacker to gain control of the system
from a remote location.

Solution : Upgrade to at least version 0.43 of Dropbear.

See also : http://matt.ucc.asn.au/dropbear/CHANGES

Network Security Threat Level: High

Networks Security ID: 10803

Vulnerability Assessment Copyright: This script is Copyright (C) Tenable Network Security

Cables, Connectors

XYRATEX 92883-01 92939-02 63011-02 IBM / SUPER MICRO SERVER BACK PLANE
$139.99
XYRATEX 92883-01 92939-02 63011-02 IBM / SUPER MICRO SERVER BACK PLANE pictureHP GG795AA MediaSmart Server Micro Tower EX470
$29.95
HP GG795AA MediaSmart Server Micro Tower EX470 pictureHP ProLiant MicroServer Gen8 Server - Ultra Micro Tower - 1-Way - Xeon
$722.59
HP ProLiant MicroServer Gen8 Server - Ultra Micro Tower - 1-Way - Xeon pictureSupermicro X10SLQ Micro ATX Server Motherboard w/ Intel Chipset & Socket H3
$175.07
Supermicro X10SLQ Micro ATX Server Motherboard w/ Intel Chipset & Socket H3 picture


Discussions

No Discussions have been posted on this vulnerability.