Lucene search

K
cve[email protected]CVE-2010-5107
HistoryMar 07, 2013 - 8:55 p.m.

CVE-2010-5107

2013-03-0720:55:01
web.nvd.nist.gov
4371
openssh
cve-2010-5107
tcp connection
denial of service
nvd

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

4.8 Medium

AI Score

Confidence

High

0.079 Low

EPSS

Percentile

94.3%

The default configuration of OpenSSH through 6.1 enforces a fixed time limit between establishing a TCP connection and completing a login, which makes it easier for remote attackers to cause a denial of service (connection-slot exhaustion) by periodically making many new TCP connections.

Affected configurations

NVD
Node
openbsdopensshRange6.1
OR
openbsdopensshMatch1.2
OR
openbsdopensshMatch1.2.1
OR
openbsdopensshMatch1.2.2
OR
openbsdopensshMatch1.2.3
OR
openbsdopensshMatch1.2.27
OR
openbsdopensshMatch1.3
OR
openbsdopensshMatch1.5
OR
openbsdopensshMatch1.5.7
OR
openbsdopensshMatch1.5.8
OR
openbsdopensshMatch2.1
OR
openbsdopensshMatch2.1.1
OR
openbsdopensshMatch2.2
OR
openbsdopensshMatch2.3
OR
openbsdopensshMatch2.3.1
OR
openbsdopensshMatch2.5
OR
openbsdopensshMatch2.5.1
OR
openbsdopensshMatch2.5.2
OR
openbsdopensshMatch2.9
OR
openbsdopensshMatch2.9.9
OR
openbsdopensshMatch2.9.9p2
OR
openbsdopensshMatch2.9p1
OR
openbsdopensshMatch2.9p2
OR
openbsdopensshMatch3.0
OR
openbsdopensshMatch3.0.1
OR
openbsdopensshMatch3.0.1p1
OR
openbsdopensshMatch3.0.2
OR
openbsdopensshMatch3.0.2p1
OR
openbsdopensshMatch3.0p1
OR
openbsdopensshMatch3.1
OR
openbsdopensshMatch3.1p1
OR
openbsdopensshMatch3.2
OR
openbsdopensshMatch3.2.2
OR
openbsdopensshMatch3.2.2p1
OR
openbsdopensshMatch3.2.3p1
OR
openbsdopensshMatch3.3
OR
openbsdopensshMatch3.3p1
OR
openbsdopensshMatch3.4
OR
openbsdopensshMatch3.4p1
OR
openbsdopensshMatch3.5
OR
openbsdopensshMatch3.5p1
OR
openbsdopensshMatch3.6
OR
openbsdopensshMatch3.6.1
OR
openbsdopensshMatch3.6.1p1
OR
openbsdopensshMatch3.6.1p2
OR
openbsdopensshMatch3.7
OR
openbsdopensshMatch3.7.1
OR
openbsdopensshMatch3.7.1p1
OR
openbsdopensshMatch3.7.1p2
OR
openbsdopensshMatch3.8
OR
openbsdopensshMatch3.8.1
OR
openbsdopensshMatch3.8.1p1
OR
openbsdopensshMatch3.9
OR
openbsdopensshMatch3.9.1
OR
openbsdopensshMatch3.9.1p1
OR
openbsdopensshMatch4.0
OR
openbsdopensshMatch4.0p1
OR
openbsdopensshMatch4.1
OR
openbsdopensshMatch4.1p1
OR
openbsdopensshMatch4.2
OR
openbsdopensshMatch4.2p1
OR
openbsdopensshMatch4.3
OR
openbsdopensshMatch4.3p1
OR
openbsdopensshMatch4.3p2
OR
openbsdopensshMatch4.4
OR
openbsdopensshMatch4.4p1
OR
openbsdopensshMatch4.5
OR
openbsdopensshMatch4.6
OR
openbsdopensshMatch4.7
OR
openbsdopensshMatch4.8
OR
openbsdopensshMatch4.9
OR
openbsdopensshMatch5.0
OR
openbsdopensshMatch5.1
OR
openbsdopensshMatch5.2
OR
openbsdopensshMatch5.3
OR
openbsdopensshMatch5.4
OR
openbsdopensshMatch5.5
OR
openbsdopensshMatch5.6
OR
openbsdopensshMatch5.7
OR
openbsdopensshMatch5.8
OR
openbsdopensshMatch5.8p2
OR
openbsdopensshMatch5.9
OR
openbsdopensshMatch6.0

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

4.8 Medium

AI Score

Confidence

High

0.079 Low

EPSS

Percentile

94.3%