Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
denyhosts 2.6 uses an incorrect regular expression when analyzing authentication logs, which allows remote attackers to cause a denial of service (incorrect block of IP addresses) via crafted login names.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Denyhosts 授权问题漏洞
Vulnerability Description
Denyhosts是美国软件开发者Phil Schwartz所研发的一套用于Linux系统下阻止暴力破解SSH密码的软件。该软件可以自动拒绝多次数尝试SSH登录的IP地址、防止黑客对SSH密码进行穷举等。 Denyhosts 2.6版本中存在授权问题漏洞,该漏洞源于分析身份验证日志时程序使用错误的正则表达式。远程攻击者可借助登陆名利用该漏洞造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A