OpenSSH Remote PAM Denial Of Service Vulnerability
BID:16892
Info
OpenSSH Remote PAM Denial Of Service Vulnerability
| Bugtraq ID: | 16892 |
| Class: | Design Error |
| CVE: |
CVE-2006-0883 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 01 2006 12:00AM |
| Updated: | Mar 05 2006 02:11AM |
| Credit: | The original discoverer of this issue is currently unknown. |
| Vulnerable: |
OpenBSD OpenSSH 3.8.1 p1 FreeBSD FreeBSD 5.4 -RELENG FreeBSD FreeBSD 5.4 -RELEASE FreeBSD FreeBSD 5.4 -PRERELEASE FreeBSD FreeBSD 5.3 -STABLE FreeBSD FreeBSD 5.3 -RELENG FreeBSD FreeBSD 5.3 -RELEASE FreeBSD FreeBSD 5.3 FreeBSD FreeBSD 5.4-STABLE |
| Not Vulnerable: |
OpenBSD OpenSSH 3.9 p1 |
Discussion
OpenSSH Remote PAM Denial Of Service Vulnerability
OpenSSH is susceptible to a remote denial-of-service vulnerability. This issue is due to a design flaw when handling connections when configured to use OpenPAM authentication system.
This issue may be exploited by remote attackers to deny SSH service to legitimate users.
OpenSSH in conjunction with OpenPAM on FreeBSD versions 5.3 and 5.4 are affected by this issue. Other operating systems and versions may also be affected.
OpenSSH is susceptible to a remote denial-of-service vulnerability. This issue is due to a design flaw when handling connections when configured to use OpenPAM authentication system.
This issue may be exploited by remote attackers to deny SSH service to legitimate users.
OpenSSH in conjunction with OpenPAM on FreeBSD versions 5.3 and 5.4 are affected by this issue. Other operating systems and versions may also be affected.
Exploit / POC
OpenSSH Remote PAM Denial Of Service Vulnerability
Attackers likely utilize a standard OpenSSH client to exploit this issue.
Attackers likely utilize a standard OpenSSH client to exploit this issue.
Solution / Fix
OpenSSH Remote PAM Denial Of Service Vulnerability
Solution:
Please see the referenced vendor advisories for more information and fixes.
OpenBSD OpenSSH 3.8.1 p1
Solution:
Please see the referenced vendor advisories for more information and fixes.
OpenBSD OpenSSH 3.8.1 p1
-
OpenBSD openssh-3.9p1.tar.gz
ftp://ftp.openbsd.org/pub/OpenBSD/OpenSSH/portable/openssh-3.9p1.tar.g z
References
OpenSSH Remote PAM Denial Of Service Vulnerability
References:
References:
- Bugzilla Bug 839 - Privilege Separation + PAM locks users out (OpenBSD)
- Debian Bug report logs - #248125 (Debian)
- OpenSSH Project Homepage (OpenSSH)