SuSE 11.1 Security Update : openssh (SAT Patch Number 6672)

Low Nessus Plugin ID 64211


The remote SuSE 11 host is missing one or more security updates.


This collective security update of openssh fixes multiple security issues :

- memory exhaustion in gssapi due to integer overflow.
(bnc#756370, CVE-2011-5000)

- forced command option information leak (bnc#744643, CVE-2012-0814) Additionally, the following bug has been fixed :

- server-side delay upon user exiting a ssh session, due to DNS queries from libaudit. (bnc#752354)


Apply SAT patch number 6672.

See Also

Plugin Details

Severity: Low

ID: 64211

File Name: suse_11_openssh-120813.nasl

Version: $Revision: 1.2 $

Type: local

Agent: unix

Published: 2013/01/25

Modified: 2013/10/25

Dependencies: 12634

Risk Information

Risk Factor: Low


Base Score: 3.5

Vector: CVSS2#AV:N/AC:M/Au:S/C:N/I:N/A:P

Vulnerability Information

CPE: p-cpe:/a:novell:suse_linux:11:openssh, p-cpe:/a:novell:suse_linux:11:openssh-askpass, cpe:/o:novell:suse_linux:11

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Patch Publication Date: 2012/08/13

Reference Information

CVE: CVE-2011-5000, CVE-2012-0814