SSH Tectia Server 4.3.1 and earlier, and SSH Secure Shell for Windows Servers, uses insecure permissions when generating the Secure Shell host identification key, which allows local users to access the key and spoof the server.
References
Link | Resource |
---|---|
http://secunia.com/advisories/15894 | Patch Vendor Advisory |
http://www.ssh.com/company/newsroom/article/653/ | Patch Vendor Advisory |
http://secunia.com/advisories/15894 | Patch Vendor Advisory |
http://www.ssh.com/company/newsroom/article/653/ | Patch Vendor Advisory |
Configurations
History
20 Nov 2024, 23:58
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/15894 - Patch, Vendor Advisory | |
References | () http://www.ssh.com/company/newsroom/article/653/ - Patch, Vendor Advisory |
Information
Published : 2005-07-05 04:00
Updated : 2024-11-20 23:58
NVD link : CVE-2005-2146
Mitre link : CVE-2005-2146
CVE.ORG link : CVE-2005-2146
JSON object : View
Products Affected
ssh
- tectia_server
CWE