|
|
| |
|
| |
openssh: denial of service
| Package(s): | openssh |
CVE #(s): | CVE-2011-5000
|
| Created: | June 20, 2012 |
Updated: | July 11, 2012 |
| Description: |
From the Red Hat advisory:
A denial of service flaw was found in the OpenSSH GSSAPI authentication
implementation. A remote, authenticated user could use this flaw to make
the OpenSSH server daemon (sshd) use an excessive amount of memory, leading
to a denial of service. GSSAPI authentication is enabled by default
("GSSAPIAuthentication yes" in "/etc/ssh/sshd_config"). |
| Alerts: |
|
( Log in to post comments)
|
|
|