Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.57762
Kategorie:Turbolinux Local Security Tests
Titel:Turbolinux TLSA-2006-45 (openssh)
Zusammenfassung:NOSUMMARY
Beschreibung:Description:

The remote host is missing an update to openssh
announced via advisory TLSA-2006-45.

OpenSSH is a FREE version of the SSH connectivity tools that
technical users of the Internet rely on.

Unspecified vulnerability in the sshd Privilege Separation Monitor in OpenSSH
causes weaker verification that authentication has been successful,
which might allow attackers to bypass authentication.

The openssh might allow remote attackers to bypass authentication.

Solution: Please use the turbopkg (zabom) tool to apply the update.
https://secure1.securityspace.com/smysecure/catid.html?in=TLSA-2006-45

Risk factor : High

CVSS Score:
7.5

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2006-5794
BugTraq ID: 20956
http://www.securityfocus.com/bid/20956
Bugtraq: 20061109 rPSA-2006-0207-1 openssh openssh-client openssh-server (Google Search)
http://www.securityfocus.com/archive/1/451100/100/0/threaded
http://www.mandriva.com/security/advisories?name=MDKSA-2006:204
http://www.openpkg.org/security/advisories/OpenPKG-SA-2006.032-openssh.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11840
RedHat Security Advisories: RHSA-2006:0738
http://rhn.redhat.com/errata/RHSA-2006-0738.html
http://securitytracker.com/id?1017183
http://secunia.com/advisories/22771
http://secunia.com/advisories/22772
http://secunia.com/advisories/22773
http://secunia.com/advisories/22778
http://secunia.com/advisories/22814
http://secunia.com/advisories/22872
http://secunia.com/advisories/22932
http://secunia.com/advisories/23513
http://secunia.com/advisories/23680
http://secunia.com/advisories/24055
SGI Security Advisory: 20061201-01-P
ftp://patches.sgi.com/support/free/security/advisories/20061201-01-P.asc
SuSE Security Announcement: SUSE-SR:2006:026 (Google Search)
http://www.novell.com/linux/security/advisories/2006_26_sr.html
http://www.vupen.com/english/advisories/2006/4399
http://www.vupen.com/english/advisories/2006/4400
XForce ISS Database: openssh-separation-verificaton-weakness(30120)
https://exchange.xforce.ibmcloud.com/vulnerabilities/30120
CopyrightCopyright (c) 2007 E-Soft Inc. http://www.securityspace.com

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.