| Revision Date: | 2013-04-29 | Version: | 11 | | Title: | Unspecified vulnerability in the sshd Privilege Separation Monitor in OpenSSH before 4.5 causes weaker verification that authentication has been successful, which might allow attackers to bypass authentication. NOTE: as of 20061108, it is believed that this issue is only exploitable by leveraging vulnerabilities in the unprivileged process, which are not known to exist. | | Description: | Unspecified vulnerability in the sshd Privilege Separation Monitor in OpenSSH before 4.5 causes weaker verification that authentication has been successful, which might allow attackers to bypass authentication. NOTE: as of 20061108, it is believed that this issue is only exploitable by leveraging vulnerabilities in the unprivileged process, which are not known to exist. | | Family: | unix | Class: | vulnerability | | Status: | ACCEPTED | Reference(s): | CVE-2006-5794
| | Platform(s): | CentOS Linux 3 CentOS Linux 4 Oracle Linux 4 Red Hat Enterprise Linux 3 Red Hat Enterprise Linux 4
| Product(s): | | | Definition Synopsis | | OS Section: RHEL3, CentOS3 RHEL3 or CentOS3
The operating system installed on the system is Red Hat Enterprise Linux 3
OR CentOS Linux 3.x
AND Configuration section
openssh is earlier than 0:3.6.1p2-33.30.13
OR openssh-askpass is earlier than 0:3.6.1p2-33.30.13
OR openssh-server is earlier than 0:3.6.1p2-33.30.13
OR openssh-clients is earlier than 0:3.6.1p2-33.30.13
OR openssh-askpass-gnome is earlier than 0:3.6.1p2-33.30.13
OR OS Section: RHEL4, CentOS4, Oracle Linux 4
RHEL4, CentOS4 or Oracle Linux 4
The operating system installed on the system is Red Hat Enterprise Linux 4
OR CentOS Linux 4.x
OR Oracle Linux 4.x
AND Configuration section
openssh is earlier than 0:3.9p1-8.RHEL4.17.1
OR openssh-askpass is earlier than 0:3.9p1-8.RHEL4.17.1
OR openssh-server is earlier than 0:3.9p1-8.RHEL4.17.1
OR openssh-clients is earlier than 0:3.9p1-8.RHEL4.17.1
OR openssh-askpass-gnome is earlier than 0:3.9p1-8.RHEL4.17.1
|
|