The Secure Shell (SSH) Daemon (SSHD) in Sun Solaris 9 does not properly log IP addresses when SSHD is configured with the ListenAddress as 0.0.0.0, which makes it easier for remote attackers to hide the source of their activities.
References
Link | Resource |
---|---|
http://secunia.com/advisories/11316/ | Patch Vendor Advisory |
http://sunsolve.sun.com/search/document.do?assetkey=1-26-57538-1 | Patch Vendor Advisory |
http://www.auscert.org.au/render.html?it=4003 | Patch Vendor Advisory |
http://www.kb.cert.org/vuls/id/737548 | Patch Third Party Advisory US Government Resource |
http://www.securityfocus.com/bid/10080 | Patch |
https://exchange.xforce.ibmcloud.com/vulnerabilities/15784 | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3505 |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2004-04-07 04:00
Updated : 2024-02-04 16:31
NVD link : CVE-2004-1357
Mitre link : CVE-2004-1357
CVE.ORG link : CVE-2004-1357
JSON object : View
Products Affected
sun
- solaris
CWE