CVE-2006-0353
EPSS 0.08%lsh-server - filedescriptor leak
發布日:2006/1/22修改日:2026/4/28
也稱為:DEBIAN-CVE-2006-0353
描述
unix_random.c in lshd for lsh 2.0.1 leaks file descriptors related to the randomness generator, which allows local users to cause a denial of service by truncating the seed file, which prevents the server from starting, or obtain sensitive seed information that could be used to crack keys.
受影響套件(2)
- Debian/lsh-utilsfrom 0, < 2.0.1cdbs-4
- Debian/lsh-utilsfrom 0, < 2.0.1-3sarge1