Unix OpenSSH sshd Identical Blocks DoS

  Severity: HIGH
  CVE Identifier: CVE-2006-4924
  Advisory Date: JUN 14, 2016

  DESCRIPTION

sshd in OpenSSH before 4.4, when using the version 1 SSH protocol, allows remote attackers to cause a denial of service (CPU consumption) via an SSH packet that contains duplicate blocks, which is not properly handled by the CRC compensation attack detector.

  TREND MICRO PROTECTION INFORMATION

  • 1000798 - Unix OpenSSH sshd Identical Blocks DoS

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1000798
  Trend Micro Deep Security DPI Rule Name: 1000798 - Unix OpenSSH sshd Identical Blocks DoS

  AFFECTED SOFTWARE AND VERSION

  • OpenBSD OpenSSH 1.2
  • OpenBSD OpenSSH 1.2.1
  • OpenBSD OpenSSH 1.2.2
  • OpenBSD OpenSSH 1.2.27
  • OpenBSD OpenSSH 1.2.3
  • OpenBSD OpenSSH 2.1
  • OpenBSD OpenSSH 2.1.1
  • OpenBSD OpenSSH 2.2
  • OpenBSD OpenSSH 2.2.x
  • OpenBSD OpenSSH 2.3
  • OpenBSD OpenSSH 2.5
  • OpenBSD OpenSSH 2.5.1
  • OpenBSD OpenSSH 2.5.2
  • OpenBSD OpenSSH 2.9
  • OpenBSD OpenSSH 2.9.9
  • OpenBSD OpenSSH 2.9.9p2
  • OpenBSD OpenSSH 2.9p1
  • OpenBSD OpenSSH 2.9p2
  • OpenBSD OpenSSH 3.0
  • OpenBSD OpenSSH 3.0 p1
  • OpenBSD OpenSSH 3.0.1
  • OpenBSD OpenSSH 3.0.1 p1
  • OpenBSD OpenSSH 3.0.1p1
  • OpenBSD OpenSSH 3.0.2
  • OpenBSD OpenSSH 3.0.2 p1
  • OpenBSD OpenSSH 3.0.2p1
  • OpenBSD OpenSSH 3.0p1
  • OpenBSD OpenSSH 3.1
  • OpenBSD OpenSSH 3.1 p1
  • OpenBSD OpenSSH 3.1p1
  • OpenBSD OpenSSH 3.2
  • OpenBSD OpenSSH 3.2.2
  • OpenBSD OpenSSH 3.2.2 p1
  • OpenBSD OpenSSH 3.2.2p1
  • OpenBSD OpenSSH 3.2.3 p1
  • OpenBSD OpenSSH 3.2.3p1
  • OpenBSD OpenSSH 3.3
  • OpenBSD OpenSSH 3.3 p1
  • OpenBSD OpenSSH 3.3p1
  • OpenBSD OpenSSH 3.4
  • OpenBSD OpenSSH 3.4 p1
  • OpenBSD OpenSSH 3.4p1
  • OpenBSD OpenSSH 3.5
  • OpenBSD OpenSSH 3.5 p1
  • OpenBSD OpenSSH 3.6
  • OpenBSD OpenSSH 3.6.1
  • OpenBSD OpenSSH 3.6.1 p1
  • OpenBSD OpenSSH 3.6.1 p2
  • OpenBSD OpenSSH 3.6.1p1
  • OpenBSD OpenSSH 3.6.1p2
  • OpenBSD OpenSSH 3.7
  • OpenBSD OpenSSH 3.7.1
  • OpenBSD OpenSSH 3.7.1 p2
  • OpenBSD OpenSSH 3.7.1p1
  • OpenBSD OpenSSH 3.7.1p2
  • OpenBSD OpenSSH 3.8
  • OpenBSD OpenSSH 3.8.1
  • OpenBSD OpenSSH 3.8.1 p1
  • OpenBSD OpenSSH 3.9
  • OpenBSD OpenSSH 3.9.1
  • OpenBSD OpenSSH 3.9.1 p1
  • OpenBSD OpenSSH 4.0
  • OpenBSD OpenSSH 4.0 p1
  • OpenBSD OpenSSH 4.1 p1
  • OpenBSD OpenSSH 4.2
  • OpenBSD OpenSSH 4.2 p1
  • OpenBSD OpenSSH 4.2p1
  • OpenBSD OpenSSH 4.3
  • OpenBSD OpenSSH 4.3p1