Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> General >> Dropbear SSH server format string vulnerability


Vulnerability Assessment Details

Dropbear SSH server format string vulnerability

Vulnerability Assessment Summary
Checks remote SSH server type and version

Detailed Explanation for this Vulnerability Assessment

Summary :

It is possible to execute arbitrary code on the remote host.

Description :

The remote host is runnning Dropbear SSH.

There is a format string vulnerability in all versions of the Dropbear SSH
server up to and including version 0.34. A possible hacker may use this flaw to
execute arbitrary code on the remote host.

Solution :

Upgrade to the latest version of the Dropbear SSH server.

Network Security Threat Level:

Critical / CVSS Base Score : 10
(AV:R/AC:L/Au:NR/C:C/A:C/I:C/B:N)

Networks Security ID: 8439

Vulnerability Assessment Copyright: This script is Copyright (C) 2003-2006 Tenable Network Security

Cables, Connectors


HPE BL460c G9 ProLiant Blade | 2x Xeon E5-2620V3 | NO RAM | P244BR | 2xHDD Tray picture

HPE BL460c G9 ProLiant Blade | 2x Xeon E5-2620V3 | NO RAM | P244BR | 2xHDD Tray

$179.00



Dell PowerEdge FX2 FX2S Enclosure - 4x PowerEdge FC640 w/ 8x Gold 6132 112C 1TB picture

Dell PowerEdge FX2 FX2S Enclosure - 4x PowerEdge FC640 w/ 8x Gold 6132 112C 1TB

$2699.99



HPE BL460c G9 ProLiant Blade | 2x Xeon E5-2630V3 | 32GB | P244BR | 2x300GB 15K picture

HPE BL460c G9 ProLiant Blade | 2x Xeon E5-2630V3 | 32GB | P244BR | 2x300GB 15K

$299.00



Dell PowerEdge M640 Blade Server 2x Gold 6138 CPUS  40 Cores 3.70GHz Turbo picture

Dell PowerEdge M640 Blade Server 2x Gold 6138 CPUS 40 Cores 3.70GHz Turbo

$649.99



HP ProLiant BL460c G9 (Gen9) 2x E5-2670V3 12 Core 3.1GHz No Ram or No Drives picture

HP ProLiant BL460c G9 (Gen9) 2x E5-2670V3 12 Core 3.1GHz No Ram or No Drives

$59.98



HP P17342-B21 M750 E2286M CTO BLADE SERVER picture

HP P17342-B21 M750 E2286M CTO BLADE SERVER

$329.95



DELL M630 BLADE SERVER x2 XEON E5-2660V3 @ 2.6GH H730 PERC HDD CADDIES 16GB FC picture

DELL M630 BLADE SERVER x2 XEON E5-2660V3 @ 2.6GH H730 PERC HDD CADDIES 16GB FC

$50.00



DELL PEM640 POWEREDGE M640 BLADE SERVER picture

DELL PEM640 POWEREDGE M640 BLADE SERVER

$539.95



Dell PowerEdge FX2s CTO Blade 4 Slot 2U Chassis 2x 2000W picture

Dell PowerEdge FX2s CTO Blade 4 Slot 2U Chassis 2x 2000W

$399.00



Supermicro H8DGT-HIBQF Server Blade 2x Opteron 6168 (2x8) 16GB Ram #73 picture

Supermicro H8DGT-HIBQF Server Blade 2x Opteron 6168 (2x8) 16GB Ram #73

$32.00



Discussions

No Discussions have been posted on this vulnerability.