PT-2006-2222 · Matt Johnston · Dropbear Ssh Server

Matt Johnston

·

Published

2006-03-14

·

Updated

2018-10-30

·

CVE-2006-1206

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Matt Johnston Dropbear SSH server versions 0.47 and earlier
Description The issue allows remote attackers to cause a denial of service, specifically connection slot exhaustion, by making a large number of connection attempts that exceeds the defined value of 30.
Recommendations For Matt Johnston Dropbear SSH server versions 0.47 and earlier, consider increasing the MAX UNAUTH CLIENTS value to a higher number to prevent connection slot exhaustion, or apply configuration changes to limit the number of concurrent connection attempts.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-1206

Affected Products

Dropbear Ssh Server