OpenSSH LINUX_AUDIT_RECORD_EVENT Remote Log Injection Weakness
BID:26097
Info
OpenSSH LINUX_AUDIT_RECORD_EVENT Remote Log Injection Weakness
| Bugtraq ID: | 26097 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-3102 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 13 2007 12:00AM |
| Updated: | Jan 04 2008 05:10PM |
| Credit: | This issue was disclosed by Red Hat. |
| Vulnerable: |
Redhat Fedora Core6 Redhat Enterprise Linux WS 4 Redhat Enterprise Linux ES 4 Redhat Enterprise Linux Desktop Workstation 5 client Redhat Enterprise Linux Desktop 5 client Redhat Enterprise Linux AS 4 Redhat Enterprise Linux 5 Server Redhat Desktop 4.0 OpenSSH OpenSSH 4.3p2 Avaya SES 3.1.2 Avaya SES 3.1.1 Avaya SES 4.0 Avaya Messaging Storage Server MSS 3.0 Avaya Messaging Storage Server 3.1 Avaya Message Networking MN 3.1 Avaya Intuity AUDIX LX 2.0 Avaya Communication Manager 4.0 Avaya Communication Manager 3.1 Avaya Communication Manager 3.0 Avaya CCS 3.1.2 Avaya CCS 3.1.1 Avaya CCS 4.0 Avaya CCS 3.1 Avaya AES 4.0 |
| Not Vulnerable: | |
Discussion
OpenSSH LINUX_AUDIT_RECORD_EVENT Remote Log Injection Weakness
OpenSSH is prone to a weakness that allows remote attackers to inject invalid data into log entries.
OpenSSH 4.3p2 is affected by this issue; other versions may also be affected.
OpenSSH is prone to a weakness that allows remote attackers to inject invalid data into log entries.
OpenSSH 4.3p2 is affected by this issue; other versions may also be affected.
Exploit / POC
OpenSSH LINUX_AUDIT_RECORD_EVENT Remote Log Injection Weakness
To exploit this issue, attackers can use an SSH client application.
To exploit this issue, attackers can use an SSH client application.
Solution / Fix
OpenSSH LINUX_AUDIT_RECORD_EVENT Remote Log Injection Weakness
Solution:
Fedora has released an advisory and fixes to address this issue. Please see the references for more information.
Solution:
Fedora has released an advisory and fixes to address this issue. Please see the references for more information.
References
OpenSSH LINUX_AUDIT_RECORD_EVENT Remote Log Injection Weakness
References:
References:
- ASA-2007-526 - PAM security, bug fix, and enhancement update (RHSA-2007-0737) (Avaya)
- OpenSSH Home Page (OpenBSD)
- ASA-2007-527 - OpenSSH security and bug fix update (RHSA-2007-0703) (Avaya)
- RHSA-2007:0540-3 openssh security and bug fix update (Red Hat)
- RHSA-2007:0555-8 pam security, bug fix, and enhancement update (Red Hat)
- RHSA-2007:0703 Moderate: openssh security and bug fix update (Red Hat)
- RHSA-2007:0737 Moderate: pam security, bug fix, and enhancement update (Red Hat)