Skip to main content

Exploitation of vulnerability in SSH1 CRC-32 compensation attack detector

posted onNovember 7, 2001
by hitbsecnews

Source: CERT.org

The CERT/CC has received multiple reports of systems being compromised via the CRC-32 compensation attack detector vulnerability described in VU#945216. We are also receiving reports of increased scanning activity for the SSH service (22/tcp).
This primarily applies to SSH Communications implementation of the SSH protocol. Systems using OpenSSH 2.3.0 or greater are not affected. Nonetheless, it contains information on how to reduce your susceptibility to SSH vulnerabilities in general.

Continue this article at CERT

Source

Tags

Networking

You May Also Like

Recent News

Friday, November 29th

Tuesday, November 19th

Friday, November 8th

Friday, November 1st

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th