Family: Debian Local Security Checks --> Category: infos
[DSA923] DSA-923-1 dropbear Vulnerability Scan
Vulnerability Scan Summary
Detailed Explanation for this Vulnerability Test
A buffer overflow has been discovered in dropbear, a lightweight SSH2
server and client, that may allow authenticated users to execute
arbitrary code as the server user (usually root).
The old stable distribution (woody) does not contain dropbear packages.
For the stable distribution (sarge) this problem has been fixed in
For the unstable distribution (sid) this problem has been fixed in
We recommend that you upgrade your dropbear package.
Solution : http://www.debian.org/security/2005/dsa-923
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.