The Secure Shell (SSH) Daemon (SSHD) in Sun Solaris 9 does not properly log IP addresses when SSHD is configured with the ListenAddress as 0.0.0.0, which makes it easier for remote attackers to hide the source of their activities.
References
Link | Resource |
---|---|
http://sunsolve.sun.com/search/document.do?assetkey=1-26-57538-1 | Patch Vendor Advisory |
http://www.kb.cert.org/vuls/id/737548 | Patch Third Party Advisory US Government Resource |
http://www.auscert.org.au/render.html?it=4003 | Patch Vendor Advisory |
http://secunia.com/advisories/11316/ | Patch Vendor Advisory |
http://www.securityfocus.com/bid/10080 | Patch |
https://exchange.xforce.ibmcloud.com/vulnerabilities/15784 | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3505 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2004-04-06 21:00
Updated : 2017-10-10 18:29
NVD link : CVE-2004-1357
Mitre link : CVE-2004-1357
JSON object : View
CWE
Products Affected
sun
- solaris