Korean
<< Back
VID 14041
Severity 30
Port 22
Protocol TCP
Class SSH
Detailed Description A version of SSH Tectia Server which is older than 4.3.7 or 4.4.2 has been installed on the host. SSH (Secure Shell) Tectia Server is a commercial SSH server. SSH Tectia Server versions prior to 4.3.7 and 4.4.2 could allow a remote attacker to execute arbitrary code on the system, caused by a format string vulnerability in the SFTP (Secure FTP) logging functionality. If a remote, authenticated attacker could create a malicious file with a specially-crafted file name and persuade an authenticated user to "stat" the file, the attacker could execute arbitrary code on the affected host or crash the server itself.

* Note: This check solely relied on the banner of the remote SSH server to assess this vulnerability, so this might be a false positive.

* References:
http://www.ssh.com/company/newsroom/article/715/
http://www.kb.cert.org/vuls/id/419241
http://www.frsirt.com/english/advisories/2006/0554

* Platforms Affected:
SSH Communications Security, SSH Tectia Server versions prior to 4.3.7
SSH Communications Security, SSH Tectia Server versions prior to 4.4.2
Any operating system Any version
Recommendation Upgrade to the latest software version of SSH Tectia Server (4.3.7 or 4.4.2 or later), available from the SSH Communications Security Web site at http://www.ssh.com/support/downloads/tectia-server/
Related URL CVE-2006-0705 (CVE)
Related URL 16640 (SecurityFocus)
Related URL 24651 (ISS)