Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.882763
Kategorie:CentOS Local Security Checks
Titel:CentOS Update for openssh CESA-2017:2563 centos6
Zusammenfassung:Check the version of openssh
Beschreibung:Summary:
Check the version of openssh

Vulnerability Insight:
OpenSSH is an SSH protocol implementation
supported by a number of Linux, UNIX, and similar operating systems. It includes
the core files necessary for both the OpenSSH client and server.

Security Fix(es):

* A covert timing channel flaw was found in the way OpenSSH handled
authentication of non-existent users. A remote unauthenticated attacker
could possibly use this flaw to determine valid user names by measuring the
timing of server responses. (CVE-2016-6210)

Affected Software/OS:
openssh on CentOS 6

Solution:
Please Install the Updated Packages.

CVSS Score:
4.3

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:N/A:N

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2016-6210
BugTraq ID: 91812
http://www.securityfocus.com/bid/91812
Debian Security Information: DSA-3626 (Google Search)
http://www.debian.org/security/2016/dsa-3626
https://www.exploit-db.com/exploits/40113/
https://www.exploit-db.com/exploits/40136/
http://seclists.org/fulldisclosure/2016/Jul/51
https://security.gentoo.org/glsa/201612-18
RedHat Security Advisories: RHSA-2017:2029
https://access.redhat.com/errata/RHSA-2017:2029
RedHat Security Advisories: RHSA-2017:2563
https://access.redhat.com/errata/RHSA-2017:2563
http://www.securitytracker.com/id/1036319
CopyrightCopyright (C) 2017 Greenbone AG

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.