New Search

HP-UX Running HP Secure Shell Remote Denial of Service (DoS)

oval:org.mitre.oval:def:19595

The default configuration of OpenSSH through 6.1 enforces a fixed time limit between establishing a TCP connection and completing a login which makes it easier for remote attackers to cause a denial of service (connection-slot exhaustion) by periodically making many new TCP connections.

Family:
unix
Status:
ACCEPTED
Platform(s):
  • HP-UX 11
Class:
vulnerability
Reference(s):
  • CVE-2010-5107
Product(s):