VID |
14041 |
Severity |
30 |
Port |
22 |
Protocol |
TCP |
Class |
SSH |
Detailed Description |
A version of SSH Tectia Server which is older than 4.3.7 or 4.4.2 has been installed on the host. SSH (Secure Shell) Tectia Server is a commercial SSH server. SSH Tectia Server versions prior to 4.3.7 and 4.4.2 could allow a remote attacker to execute arbitrary code on the system, caused by a format string vulnerability in the SFTP (Secure FTP) logging functionality. If a remote, authenticated attacker could create a malicious file with a specially-crafted file name and persuade an authenticated user to "stat" the file, the attacker could execute arbitrary code on the affected host or crash the server itself.
* Note: This check solely relied on the banner of the remote SSH server to assess this vulnerability, so this might be a false positive.
* References: http://www.ssh.com/company/newsroom/article/715/ http://www.kb.cert.org/vuls/id/419241 http://www.frsirt.com/english/advisories/2006/0554
* Platforms Affected: SSH Communications Security, SSH Tectia Server versions prior to 4.3.7 SSH Communications Security, SSH Tectia Server versions prior to 4.4.2 Any operating system Any version |
Recommendation |
Upgrade to the latest software version of SSH Tectia Server (4.3.7 or 4.4.2 or later), available from the SSH Communications Security Web site at http://www.ssh.com/support/downloads/tectia-server/ |
Related URL |
CVE-2006-0705 (CVE) |
Related URL |
16640 (SecurityFocus) |
Related URL |
24651 (ISS) |
|