Vulnerabilities > CVE-1999-1085 - Unspecified vulnerability in SSH Secure Shell 1.2.23/1.2.25
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN ssh
nessus
Summary
SSH 1.2.25, 1.2.23, and other versions, when used in in CBC (Cipher Block Chaining) or CFB (Cipher Feedback 64 bits) modes, allows remote attackers to insert arbitrary data into an existing stream between an SSH client and server by using a known plaintext attack and computing a valid CRC-32 checksum for the packet, aka the "SSH insertion attack."
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Nessus
NASL family | Misc. |
NASL id | SSH_INSERTION.NASL |
description | The remote host is running a version of SSH that is older than (or as old as) version 1.2.23. The remote version of this software is vulnerable to a known plaintext attack, which could allow an attacker to insert encrypted packets in the client - server stream that will be deciphered by the server, thus allowing the attacker to execute arbitrary commands on the remote server |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 10268 |
published | 1999-07-23 |
reporter | This script is Copyright (C) 1999-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/10268 |
title | SSH CBC/CFB Data Stream Injection |
code |
|
References
- http://marc.info/?l=bugtraq&m=90221103125884&w=2
- http://marc.info/?l=bugtraq&m=90221103125884&w=2
- http://marc.info/?l=bugtraq&m=90221104525878&w=2
- http://marc.info/?l=bugtraq&m=90221104525878&w=2
- http://www.iss.net/security_center/static/1126.php
- http://www.iss.net/security_center/static/1126.php
- http://www.kb.cert.org/vuls/id/13877
- http://www.kb.cert.org/vuls/id/13877