Re: sshd exploit?

From: Kris Kennaway (kris@obsecurity.org)
Date: 11/29/01


Date: Wed, 28 Nov 2001 20:28:48 -0800
From: Kris Kennaway <kris@obsecurity.org>
To: 00 <x2s500y@sekurity.net>


On Wed, Nov 28, 2001 at 10:41:44PM -0500, 00 wrote:
> Yes, your friend is right, I'm not sure of the specifics, but I have a copy
> of the exploit and it has only been released in binary form. OpenBSD's
> OpenSSH team or no other SSH development group has yet to make a formal
> statement, most likely due to the fact they don't know what the vunerability
> is as of yet so they don't want to spark a fire. The vunerability is a
> great threat because it is remote and root compromisable. The exploit scans
> a listing of addresses, and when it find a host it just drops to a
> rootshell.

Please forward a copy to security-officer@FreeBSD.org. We've only
seen an exploit for the old vulnerability in OpenSSH 2.2.0, which
obviously isn't that exciting :)

Kris



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Relevant Pages

  • Re: sshd exploit?
    ... >OpenSSH team or no other SSH development group has yet to make a formal ... most likely due to the fact they don't know what the vunerability ... and when it find a host it just drops to a ...
    (FreeBSD-Security)
  • Re: sshd exploit?
    ... Does this expliot effect all sshd's or can it be stopped with wrappers ... > Yes, your friend is right, I'm not sure of the specifics, but I have a copy ... most likely due to the fact they don't know what the vunerability ... >>SSHD now' because of a 'private exploit being circulated since Saturday'. ...
    (FreeBSD-Security)
  • Re: what is a DSO exploit?
    ... Google is your friend. ... A roundup from what the links say, it's a vunerability in IE that allows ... unauthorised or malicious code to be executed on your computer, ...
    (microsoft.public.security)
  • Re: sshd exploit?
    ... Yes, your friend is right, I'm not sure of the specifics, but I have a copy ... of the exploit and it has only been released in binary form. ... most likely due to the fact they don't know what the vunerability ... >SSHD now' because of a 'private exploit being circulated since Saturday'. ...
    (FreeBSD-Security)