- Community Home
- >
- Servers and Operating Systems
- >
- Operating Systems
- >
- Operating System - HP-UX
- >
- pam_ssh login security issue in HP-UX
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Discussions
Discussions
Discussions
Forums
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО08-01-2010 09:40 PM
тАО08-01-2010 09:40 PM
pam_ssh login security issue in HP-UX
We are scanned our hp-unix machines(11.00,11.23 and 11.31)using Nesses tool. It gives the below security risk alert. Kindly help me to close this vulnerability.
pam_ssh Login Prompt Remote Username Enumeration
Synopsis :
The remote host is running a SSH server with an information
disclosure vulnerability.
Description :
The remote host is running a SSH server that responds differently to
login attempts depending on whether or not a valid username is
given. This is likely due to a vulnerable version of pam_ssh.
A remote attacker could use this to enumerate valid usernames,
which could be used to mount further attacks.
See also :
http://bugs.gentoo.org/show_bug.cgi?id=263579
Solution :
There is no known solution at this time.
Risk factor :
Medium / CVSS Base Score : 5.0
(CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N)
CVE :
CVE-2009-1273
BID : 34333
Other references :
Secunia:34536, OSVDB:53693
Nessus ID : 38197
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО08-01-2010 10:59 PM
тАО08-01-2010 10:59 PM
Re: pam_ssh login security issue in HP-UX
At my end, ssh reacts no differently for existing or nonexisting usernames.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО08-01-2010 11:03 PM
тАО08-01-2010 11:03 PM
Re: pam_ssh login security issue in HP-UX
If not then probably its OK to ignore.
BR,
Kapil+
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО08-01-2010 11:12 PM
тАО08-01-2010 11:12 PM
Re: pam_ssh login security issue in HP-UX
it should be having 3 section
Account/Authentication/Password and Session Management
what does sshd line says there
from pam_hpsec(5) it seems that hpsec is the module which actually comes above all other authentication.
I do not see any specific libpam_ssh.so in my server i suppose its being handles by hpsec only.
BR,
Kapil+
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО08-06-2010 02:04 AM
тАО08-06-2010 02:04 AM
Re: pam_ssh login security issue in HP-UX
Problem solved after installed the latest version of ssh and ssl
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО09-08-2010 06:44 AM
тАО09-08-2010 06:44 AM