CVE-2008-5161 - CVE House
Back to Database
Status published Unknown CVE-2008-5161

Error handling in the SSH protocol in (1) SSH Tectia...

Vulnerability Description

Error handling in the SSH protocol in (1) SSH Tectia Client and Server and Connector 4.0 through 4.4.11, 5.0 through 5.2.4, and 5.3 through 5.3.8; Client and Server and ConnectSecure 6.0 through 6.0.4; Server for Linux on IBM System z 6.0.4; Server for IBM z/OS 5.5.1 and earlier, 6.0.0, and 6.0.1; and Client 4.0-J through 4.3.3-J and 4.0-K through 4.3.10-K; and (2) OpenSSH 4.7p1 and possibly other versions, when using a block cipher algorithm in Cipher Block Chaining (CBC) mode, makes it easier for remote attackers to recover certain plaintext data from an arbitrary block of ciphertext in an SSH session via unknown vectors.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2008-5161

Credits & Attribution

No credits recorded in the NVD database.

References

Affected Vendor

Affected Software

openssh, tectia client, tectia connector, tectia connectsecure, tectia server
Vulnerable Versions:
4.7p1, 4.0, 4.0.1, 4.0.3, 4.0.4, 4.0.5, 4.2, 4.2.1, 4.3, 4.3.1, 4.3.1j, 4.3.2, 4.3.2j, 4.3.3, 4.3.4, 4.3.5, 4.3.6, 4.3.7, 4.3.8k, 4.3.9k, 4.4, 4.4.1, 4.4.2, 4.4.3, 4.4.4, 4.4.6, 4.4.7, 4.4.8, 4.4.9, 4.4.10, 4.4.11, 5.0.0, 5.0.0f, 5.0.1, 5.0.1f, 5.0.2, 5.0.2f, 5.0.3, 5.0.3f, 5.1.0, 5.1.1, 5.1.2, 5.1.3, 5.2.0, 5.2.1, 5.2.2, 5.2.3, 5.2.4, 5.3.0, 5.3.1, 5.3.2, 5.3.3, 5.3.5, 5.3.6, 5.3.7, 5.3.8, 6.0.0, 6.0.1, 6.0.2, 6.0.3, 6.0.4, 4.0.7, 4.1.2, 4.1.3, 4.1.5, 4.2.0, 4.3.0, 4.4.0, 4.2.2, 4.4.5, 5.3.4, 5.4.0, 5.4.1, 5.4.2, 5.5.0, 5.5.1

Timeline

Official Publish: November 19th, 2008
Last Modified: May 28th, 2026
Added to House: July 18th, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.