CVE-2004-1357

Sun Solaris 9 - Incomplete IP Address Logging in SSHD with ListenAddress 0.0.0.0

Title source: llm
STIX 2.1

Description

The Secure Shell (SSH) Daemon (SSHD) in Sun Solaris 9 does not properly log IP addresses when SSHD is configured with the ListenAddress as 0.0.0.0, which makes it easier for remote attackers to hide the source of their activities.

References (7)

Core 7
Core References
Patch, Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-26-57538-1
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/15784
Patch, Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/737548
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3505
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/10080
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/11316/
Patch, Vendor Advisory third-party-advisory x_refsource_auscert
http://www.auscert.org.au/render.html?it=4003

Scores

EPSS 0.0498
EPSS Percentile 89.8%

Details

Status published
Products (1)
sun/solaris 9.0 (2 CPE variants)
Published Apr 07, 2004
Tracked Since Feb 18, 2026