ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Industry watch Toolkit

SSH opens computers to attack

Patrick Gray, ZDNet Australia and Matthew Broersma ZDNet Australia

Published: 18 Dec 2002 16:47 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Vulnerabilities have been found in multiple SSH implementations that could allow an attacker to execute code or create a denial of service on servers and clients, according to an advisory from CERT, a security alert service.

SSH is a shell protocol widely used by system administrators to access servers while keeping all transmissions, including passwords, encrypted.

The vulnerabilities were located by security software company Rapid7 using an SSH test suite named "SSHhredder", according to CERT. These include buffer overflows and occur before a user is required to authenticate, meaning that they are accessible to any attacker.

The attacks would execute at the security level at which the SSH process is running, which is normally a highly privileged level -- System on Windows, and root on Unix systems.

Rapid7 said that several vendors' SSH implementations were vulnerable, including those of SSH Communications Security, F-Secure, Pragma Systems, PuTTY, FiSSH, ShellGuard, and WinSCP. However, SSH and F-Secure, as well as Cisco Systems, Cray, Fujitsu, IBM, Netscreen Technologies, OpenSSH, VanDyke Software and LSH all said that their own testing showed that their software was not vulnerable.

Only Pragma Systems and PuTTY confirmed that some software was affected. PuTTY said that version 0.53b of its software addressed the issue. Pragma said that versions 2.0 and 3.0 of Pragma SecureShell were affected, and that it had corrected the issue in version 3.0. The company is offering its customers an upgrade to the fixed version.

The most widely used implementation, OpenSSH, is not vulnerable.

CERT's original advisory is available on the organisation's Web site.


For all security-related news, including updates on the latest viruses, hacking exploits and patches, check out ZDNet UK's Security News Section.

Have your say instantly, and see what others have said. Go to the Security forum.

Let the editors know what you think in the Mailroom.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
58 out of 91 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:







Related Jobs

Linux / Cisco Systems Engineers - Oxfordshire

Linux / Cisco Systems Engineers - Oxfordshire Would you like to work within a dynamic environment embracing cutting-edge technologies? As a Microsoft ...

Warwick - SAP System Support Analyst - Level D-00048892

Monitor vendors release notes and plan necessary upgrades and patches as required. There will also be strong involvement in project implementations ...

SAP PP Configuration Expert-SAP PP implementations-Global Outfit-60K

A fantastic opportunity has arisen for a SAP PP Consultant to join a rapidly expanding fast moving consumer goods company. Having been successful in ...

Featured Talkback

When all is said, if Microsoft produce the best product people will buy it and thats a good thing. If people have to buy their product because no one else can produce an alternative, only because interoperability protocols are kept secret, then thats a bad thing.

By: pround

Read full story:
EU court crushes Microsoft's antitrust appeal