CVE Database
/

CVE-2013-4434

Back to search

CVE-2013-4434

Published: Oct 25, 2013

Modified: Aug 6, 2024

PUBLISHED

Description

Dropbear SSH Server before 2013.59 generates error messages for a failed logon attempt with different time delays depending on whether the user account exists, which allows remote attackers to discover valid usernames.

VendorProductVersions

n/a

n/a

affected
n/a

References

55173
third-party-advisory
x_refsource_SECUNIA
62993
vdb-entry
x_refsource_BID
openSUSE-SU-2013:1696
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2013:1616
vendor-advisory
x_refsource_SUSE

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now