CVE-2010-4478: Critical severity OpenBSD OpenSSH vulnerability
OpenSSH 5.6 and earlier, when J-PAKE is enabled, does not properly validate the public parameters in the J-PAKE protocol, which allows remote attackers to bypass the need for knowledge of the shared secret, and successfully authenticate, by sending crafted values in each round of the protocol, a related issue to CVE-2010-4252.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-4478?
CVE-2010-4478 is classified as a medium severity vulnerability due to the ability of an attacker to bypass authentication.
How do I fix CVE-2010-4478?
To fix CVE-2010-4478, upgrade to OpenSSH version 5.7 or later, which includes the required security patches.
What does CVE-2010-4478 affect?
CVE-2010-4478 affects OpenSSH versions 5.6 and earlier, specifically when the J-PAKE protocol is enabled.
Can exploiting CVE-2010-4478 lead to unauthorized access?
Yes, exploiting CVE-2010-4478 allows remote attackers to authenticate without knowledge of the shared secret.
What is the J-PAKE protocol related to CVE-2010-4478?
The J-PAKE protocol is a key agreement protocol that allows two parties to establish a shared key, which CVE-2010-4478 improperly validates.