← Back

CVE-2010-5107

nvd nist
Published: Mar 7, 2013Modified: May 29, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

The default configuration of OpenSSH through 6.1 enforces a fixed time limit between establishing a TCP connection and completing a login, which makes it easier for remote attackers to cause a denial of service (connection-slot exhaustion) by periodically making many new TCP connections.

Affected (83)

Products: Openbsd: Openssh
1 product
Openssh
Configuration A
83 vulnerable
Vulnerable SoftwareAffected Versions
Openbsd
Up to 6.1
Version 1.2.1
Version 1.2.27
Version 1.2.2
Version 1.2.3
Version 1.2
Version 1.3
Version 1.5.7
Version 1.5.8
Version 1.5
Version 2.1.1
Version 2.1
Version 2.2
Version 2.3.1
Version 2.3
Version 2.5.1
Version 2.5.2
Version 2.5
Version 2.9.9
Version 2.9.9p2
Version 2.9
Version 2.9p1
Version 2.9p2
Version 3.0.1
Version 3.0.1p1
Version 3.0.2
Version 3.0.2p1
Version 3.0
Version 3.0p1
Version 3.1
Version 3.1p1
Version 3.2.2
Version 3.2.2p1
Version 3.2.3p1
Version 3.2
Version 3.3
Version 3.3p1
Version 3.4
Version 3.4p1
Version 3.5
Version 3.5p1
Version 3.6.1
Version 3.6.1p1
Version 3.6.1p2
Version 3.6
Version 3.7.1
Version 3.7.1p1
Version 3.7.1p2
Version 3.7
Version 3.8.1
Version 3.8.1p1
Version 3.8
Version 3.9.1
Version 3.9.1p1
Version 3.9
Version 4.0
Version 4.0p1
Version 4.1
Version 4.1p1
Version 4.2
Version 4.2p1
Version 4.3
Version 4.3p1
Version 4.3p2
Version 4.4
Version 4.4p1
Version 4.5
Version 4.6
Version 4.7
Version 4.8
Version 4.9
Version 5.0
Version 5.1
Version 5.2
Version 5.3
Version 5.4
Version 5.5
Version 5.6
Version 5.7
Version 5.8
Version 5.8p2
Version 5.9
Version 6.0

References (24)

Source: secalert@redhat.com
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.