First published: Tue May 22 2007(Updated: )
Unspecified vulnerability in the Secure Shell (SSH) in HP Tru64 UNIX 5.1B-4 and 5.1B-3 allows remote attackers to identify valid users via unspecified vectors, probably related to timing attacks and AuthInteractiveFailureRandomTimeout.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HP Tru64 | =5.1b4 | |
HP Tru64 | =5.1b3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-2791 is considered medium severity due to its potential to allow remote attackers to identify valid users.
To mitigate CVE-2007-2791, ensure that your HP Tru64 UNIX is updated to the latest version that addresses this vulnerability.
CVE-2007-2791 affects HP Tru64 UNIX versions 5.1B-4 and 5.1B-3.
Yes, CVE-2007-2791 can be exploited remotely by attackers to identify valid users.
CVE-2007-2791 is caused by unspecified vectors in the Secure Shell (SSH) implementation that may relate to timing attacks.