Back to search
CVE-2006-4924
Published: Sep 27, 2006
Modified: Aug 7, 2024
PUBLISHED
Description
sshd in OpenSSH before 4.4, when using the version 1 SSH protocol, allows remote attackers to cause a denial of service (CPU consumption) via an SSH packet that contains duplicate blocks, which is not properly handled by the CRC compensation attack detector.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
FreeBSD-SA-06:22
vendor-advisory
x_refsource_FREEBSD
http://sourceforge.net/forum/forum.php?forum_id=681763
x_refsource_CONFIRM
http://blogs.sun.com/security/entry/sun_alert_102962_security_vulnerability
x_refsource_CONFIRM
22270
third-party-advisory
x_refsource_SECUNIA
HPSBUX02178
vendor-advisory
x_refsource_HP
23038
third-party-advisory
x_refsource_SECUNIA
USN-355-1
vendor-advisory
x_refsource_UBUNTU
2006-0054
vendor-advisory
x_refsource_TRUSTIX
http://www.vmware.com/support/vi3/doc/esx-3069097-patch.html
x_refsource_CONFIRM
ADV-2006-4401
vdb-entry
x_refsource_VUPEN
ADV-2009-0740
vdb-entry
x_refsource_VUPEN
22116
third-party-advisory
x_refsource_SECUNIA
21923
third-party-advisory
x_refsource_SECUNIA
24805
third-party-advisory
x_refsource_SECUNIA
23340
third-party-advisory
x_refsource_SECUNIA
[2.9] 015: SECURITY FIX: October 12, 2006
vendor-advisory
x_refsource_OPENBSD
SUSE-SR:2006:024
vendor-advisory
x_refsource_SUSE
22487
third-party-advisory
x_refsource_SECUNIA
TA07-072A
third-party-advisory
x_refsource_CERT
GLSA-200611-06
vendor-advisory
x_refsource_GENTOO
http://support.avaya.com/elmodocs2/security/ASA-2006-262.htm
x_refsource_CONFIRM
http://bugs.gentoo.org/show_bug.cgi?id=148228
x_refsource_CONFIRM
22164
third-party-advisory
x_refsource_SECUNIA
102962
vendor-advisory
x_refsource_SUNALERT
SUSE-SA:2006:062
vendor-advisory
x_refsource_SUSE
22362
third-party-advisory
x_refsource_SECUNIA
23680
third-party-advisory
x_refsource_SECUNIA
APPLE-SA-2007-03-13
vendor-advisory
x_refsource_APPLE
34274
third-party-advisory
x_refsource_SECUNIA
VU#787448
third-party-advisory
x_refsource_CERT-VN
http://docs.info.apple.com/article.html?artnum=305214
x_refsource_CONFIRM
1016931
vdb-entry
x_refsource_SECTRACK
ADV-2006-4869
vdb-entry
x_refsource_VUPEN
22298
third-party-advisory
x_refsource_SECUNIA
22352
third-party-advisory
x_refsource_SECUNIA
22236
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:1193
vdb-entry
signature
x_refsource_OVAL
24799
third-party-advisory
x_refsource_SECUNIA
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=207955
x_refsource_MISC
22091
third-party-advisory
x_refsource_SECUNIA
SSRT061267
vendor-advisory
x_refsource_HP
22495
third-party-advisory
x_refsource_SECUNIA
ADV-2007-1332
vdb-entry
x_refsource_VUPEN
20216
vdb-entry
x_refsource_BID
20060927 rPSA-2006-0174-1 gnome-ssh-askpass openssh openssh-client openssh-server
mailing-list
x_refsource_BUGTRAQ
GLSA-200609-17
vendor-advisory
x_refsource_GENTOO
22823
third-party-advisory
x_refsource_SECUNIA
SSA:2006-272-02
vendor-advisory
x_refsource_SLACKWARE
RHSA-2006:0697
vendor-advisory
x_refsource_REDHAT
https://hypersonic.bluecoat.com/support/securityadvisories/ssh_server_on_sg
x_refsource_CONFIRM
ADV-2006-3777
vdb-entry
x_refsource_VUPEN
OpenPKG-SA-2006.022
vendor-advisory
x_refsource_OPENPKG
22183
third-party-advisory
x_refsource_SECUNIA
openssh-block-dos(29158)
vdb-entry
x_refsource_XF
[openssh-unix-dev] 20060927 Announce: OpenSSH 4.4 released
mailing-list
x_refsource_MLIST
23241
third-party-advisory
x_refsource_SECUNIA
ADV-2007-2119
vdb-entry
x_refsource_VUPEN
ADV-2007-0930
vdb-entry
x_refsource_VUPEN
[security-announce] 20070409 Globus Security Advisory 2007-02: GSI-OpenSSH vulnerability
mailing-list
x_refsource_MLIST
22926
third-party-advisory
x_refsource_SECUNIA
29371
third-party-advisory
x_refsource_SECUNIA
22208
third-party-advisory
x_refsource_SECUNIA
http://www.vmware.com/support/vi3/doc/esx-9986131-patch.html
x_refsource_CONFIRM
22245
third-party-advisory
x_refsource_SECUNIA
https://issues.rpath.com/browse/RPL-661
x_refsource_CONFIRM
22196
third-party-advisory
x_refsource_SECUNIA
DSA-1212
vendor-advisory
x_refsource_DEBIAN
oval:org.mitre.oval:def:10462
vdb-entry
signature
x_refsource_OVAL
RHSA-2006:0698
vendor-advisory
x_refsource_REDHAT
29152
vdb-entry
x_refsource_OSVDB
25608
third-party-advisory
x_refsource_SECUNIA
22158
third-party-advisory
x_refsource_SECUNIA
MDKSA-2006:179
vendor-advisory
x_refsource_MANDRIVA
DSA-1189
vendor-advisory
x_refsource_DEBIAN
http://support.avaya.com/elmodocs2/security/ASA-2006-216.htm
x_refsource_CONFIRM
24479
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now