|
|
|
![]() |
Vulnerability Note VU#930161NetScreen Secure Command Shell (SCS) denial-of-service vulnerabilityOverviewThe Secure Command Shell service on NetScreen firewall products contains a remotely exploitable denial-of-service vulnerability.I. DescriptionFirewall products from NetScreen Technologies, Inc. include a Secure Shell version 1 (SSHv1) implementation called Secure Command Shell (SCS). The SCS service contains a remotely exploitable denial-of-service vulnerability which can cause affected units to crash. According to the original reporter, programs which attempt to exploit VU#945216 trigger the vulnerability and cause the unit to crash. NetScreen has confirmed this, but has stated that this vulnerability is not the same as VU#945216.II. ImpactA remote attacker can cause the affected unit to crash. The original reporter indicates that the system may subsequently require a hard reboot.III. SolutionNetScreen has issued a patch for this vulnerability. Information about it can be found at http://www.netscreen.com/support/alerts/11_06_02.html
References
Thanks to Erik Parker of DigitalDefense for reporting this vulnerability. This document was written by Chad R Dougherty.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||