积极预防 及时发现
快速响应 力保恢复
SSH 1.2.25、 1.2.23以及其他版本使用CBC (Cipher Block Chaini...
发布时间:2002-05-20 信息来源:管理员

CNCVE编号:CNCVE-19991085 CVE编号:CVE-1999-1085 安全级别:中 漏洞中文描述: SSH 1.2.25、 1.2.23以及其他版本使用CBC (Cipher Block Chaining)或CFB (Cipher Feedback 64 bits)模式时,允许远程攻击者在SSH服务器和客户机之间存在的流中插入任意数据, 通过一个知名的明文攻击,这就是“SSH insertion attack”。 漏洞英文描述: SSH 1.2.25, 1.2.23, and other versions, when used in in CBC (Cipher Block Chaining) or CFB (Cipher Feedback 64 bits) modes, allows remote attackers to insert arbitrary data into an existing stream between an SSH client and server by using a known plaintext attack ,aka“SSH insertion attack” 漏洞参考: 系统类型:其他 漏洞类型:其他