PT-2006-2222 · Matt Johnston · Dropbear Ssh Server
Matt Johnston
·
Published
2006-03-14
·
Updated
2018-10-30
·
CVE-2006-1206
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Matt Johnston Dropbear SSH server versions 0.47 and earlier
Description
The issue allows remote attackers to cause a denial of service, specifically connection slot exhaustion, by making a large number of connection attempts that exceeds the defined value of 30.
Recommendations
For Matt Johnston Dropbear SSH server versions 0.47 and earlier, consider increasing the MAX UNAUTH CLIENTS value to a higher number to prevent connection slot exhaustion, or apply configuration changes to limit the number of concurrent connection attempts.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Dropbear Ssh Server