Sun Solaris sshd Timeout Mechanism Remote Denial of Service
Medium Nessus Network Monitor Plugin ID 5247
SynopsisThe remote SSH server is vulnerable to a remote denial of service attack.
DescriptionThe remote Solaris 10 host appears to be running the Solaris sshd daemon earlier than version 1.1.3. Such versions are potentially affected by a denial-of-service vulnerability in the timeout mechanism. An unprivileged attacker, exploiting this flaw, could crash the affected service.
SolutionApply patch 143140-01 or later, as referenced above.