PT-2006-6929 · Fail2Ban · Fail2Ban

Tavis Ormandy

·

Published

2006-12-06

·

Updated

2017-07-29

·

CVE-2006-6302

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions fail2ban versions 0.7.4 and earlier
Description The issue allows remote attackers to cause a denial of service by adding arbitrary IP addresses to the sshd log file. This can be achieved by logging in via ssh with a login name containing certain strings with an IP address, which are not properly parsed from sshd log files.
Recommendations For versions 0.7.4 and earlier, consider updating to a newer version that properly parses sshd log files to prevent arbitrary hosts from being added to the /etc/hosts.deny file. As a temporary workaround, consider restricting access to the sshd log file to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-6302

Affected Products

Fail2Ban