{
    "CVE_data_meta": {
        "ASSIGNER": "cve@mitre.org",
        "ID": "CVE-2008-5161",
        "STATE": "PUBLIC"
    },
    "affects": {
        "vendor": {
            "vendor_data": [
                {
                    "product": {
                        "product_data": [
                            {
                                "product_name": "n/a",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "n/a"
                                        }
                                    ]
                                }
                            }
                        ]
                    },
                    "vendor_name": "n/a"
                }
            ]
        }
    },
    "data_format": "MITRE",
    "data_type": "CVE",
    "data_version": "4.0",
    "description": {
        "description_data": [
            {
                "lang": "eng",
                "value": "Error handling in the SSH protocol in (1) SSH Tectia Client and Server and Connector 4.0 through 4.4.11, 5.0 through 5.2.4, and 5.3 through 5.3.8; Client and Server and ConnectSecure 6.0 through 6.0.4; Server for Linux on IBM System z 6.0.4; Server for IBM z/OS 5.5.1 and earlier, 6.0.0, and 6.0.1; and Client 4.0-J through 4.3.3-J and 4.0-K through 4.3.10-K; and (2) OpenSSH 4.7p1 and possibly other versions, when using a block cipher algorithm in Cipher Block Chaining (CBC) mode, makes it easier for remote attackers to recover certain plaintext data from an arbitrary block of ciphertext in an SSH session via unknown vectors."
            }
        ]
    },
    "problemtype": {
        "problemtype_data": [
            {
                "description": [
                    {
                        "lang": "eng",
                        "value": "n/a"
                    }
                ]
            }
        ]
    },
    "references": {
        "reference_data": [
            {
                "name": "http://openssh.org/txt/cbc.adv",
                "refsource": "CONFIRM",
                "url": "http://openssh.org/txt/cbc.adv"
            },
            {
                "name": "247186",
                "refsource": "SUNALERT",
                "url": "http://sunsolve.sun.com/search/document.do?assetkey=1-66-247186-1"
            },
            {
                "name": "32319",
                "refsource": "BID",
                "url": "http://www.securityfocus.com/bid/32319"
            },
            {
                "name": "33121",
                "refsource": "SECUNIA",
                "url": "http://secunia.com/advisories/33121"
            },
            {
                "name": "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05157667",
                "refsource": "CONFIRM",
                "url": "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05157667"
            },
            {
                "name": "49872",
                "refsource": "OSVDB",
                "url": "http://osvdb.org/49872"
            },
            {
                "name": "33308",
                "refsource": "SECUNIA",
                "url": "http://secunia.com/advisories/33308"
            },
            {
                "name": "RHSA-2009:1287",
                "refsource": "REDHAT",
                "url": "http://rhn.redhat.com/errata/RHSA-2009-1287.html"
            },
            {
                "name": "http://www.cpni.gov.uk/Docs/Vulnerability_Advisory_SSH.txt",
                "refsource": "MISC",
                "url": "http://www.cpni.gov.uk/Docs/Vulnerability_Advisory_SSH.txt"
            },
            {
                "name": "1021382",
                "refsource": "SECTRACK",
                "url": "http://www.securitytracker.com/id?1021382"
            },
            {
                "name": "https://kc.mcafee.com/corporate/index?page=content&id=SB10163",
                "refsource": "CONFIRM",
                "url": "https://kc.mcafee.com/corporate/index?page=content&id=SB10163"
            },
            {
                "name": "50036",
                "refsource": "OSVDB",
                "url": "http://osvdb.org/50036"
            },
            {
                "name": "32833",
                "refsource": "SECUNIA",
                "url": "http://secunia.com/advisories/32833"
            },
            {
                "name": "36558",
                "refsource": "SECUNIA",
                "url": "http://secunia.com/advisories/36558"
            },
            {
                "name": "50035",
                "refsource": "OSVDB",
                "url": "http://osvdb.org/50035"
            },
            {
                "name": "http://www.ssh.com/company/news/article/953/",
                "refsource": "CONFIRM",
                "url": "http://www.ssh.com/company/news/article/953/"
            },
            {
                "name": "1021235",
                "refsource": "SECTRACK",
                "url": "http://www.securitytracker.com/id?1021235"
            },
            {
                "name": "34857",
                "refsource": "SECUNIA",
                "url": "http://secunia.com/advisories/34857"
            },
            {
                "name": "http://support.avaya.com/elmodocs2/security/ASA-2008-503.htm",
                "refsource": "MISC",
                "url": "http://support.avaya.com/elmodocs2/security/ASA-2008-503.htm"
            },
            {
                "name": "http://support.attachmate.com/techdocs/2398.html",
                "refsource": "CONFIRM",
                "url": "http://support.attachmate.com/techdocs/2398.html"
            },
            {
                "name": "http://www.rtpro.yamaha.co.jp/RT/FAQ/Security/CPNI957037.html",
                "refsource": "CONFIRM",
                "url": "http://www.rtpro.yamaha.co.jp/RT/FAQ/Security/CPNI957037.html"
            },
            {
                "name": "ADV-2008-3173",
                "refsource": "VUPEN",
                "url": "http://www.vupen.com/english/advisories/2008/3173"
            },
            {
                "name": "20081123 Revised: OpenSSH security advisory: cbc.adv",
                "refsource": "BUGTRAQ",
                "url": "http://www.securityfocus.com/archive/1/498579/100/0/threaded"
            },
            {
                "name": "openssh-sshtectia-cbc-info-disclosure(46620)",
                "refsource": "XF",
                "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/46620"
            },
            {
                "name": "32740",
                "refsource": "SECUNIA",
                "url": "http://secunia.com/advisories/32740"
            },
            {
                "name": "ADV-2009-1135",
                "refsource": "VUPEN",
                "url": "http://www.vupen.com/english/advisories/2009/1135"
            },
            {
                "name": "32760",
                "refsource": "SECUNIA",
                "url": "http://secunia.com/advisories/32760"
            },
            {
                "name": "ADV-2009-3184",
                "refsource": "VUPEN",
                "url": "http://www.vupen.com/english/advisories/2009/3184"
            },
            {
                "name": "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10705",
                "refsource": "CONFIRM",
                "url": "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10705"
            },
            {
                "name": "1021236",
                "refsource": "SECTRACK",
                "url": "http://www.securitytracker.com/id?1021236"
            },
            {
                "name": "https://kc.mcafee.com/corporate/index?page=content&id=SB10106",
                "refsource": "CONFIRM",
                "url": "https://kc.mcafee.com/corporate/index?page=content&id=SB10106"
            },
            {
                "name": "HPSBMA02447",
                "refsource": "HP",
                "url": "http://marc.info/?l=bugtraq&m=125017764422557&w=2"
            },
            {
                "name": "http://isc.sans.org/diary.html?storyid=5366",
                "refsource": "MISC",
                "url": "http://isc.sans.org/diary.html?storyid=5366"
            },
            {
                "name": "APPLE-SA-2009-11-09-1",
                "refsource": "APPLE",
                "url": "http://lists.apple.com/archives/security-announce/2009/Nov/msg00000.html"
            },
            {
                "name": "SSRT090062",
                "refsource": "HP",
                "url": "http://marc.info/?l=bugtraq&m=125017764422557&w=2"
            },
            {
                "name": "ADV-2008-3409",
                "refsource": "VUPEN",
                "url": "http://www.vupen.com/english/advisories/2008/3409"
            },
            {
                "name": "ADV-2008-3172",
                "refsource": "VUPEN",
                "url": "http://www.vupen.com/english/advisories/2008/3172"
            },
            {
                "name": "oval:org.mitre.oval:def:11279",
                "refsource": "OVAL",
                "url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11279"
            },
            {
                "name": "20081121 OpenSSH security advisory: cbc.adv",
                "refsource": "BUGTRAQ",
                "url": "http://www.securityfocus.com/archive/1/498558/100/0/threaded"
            },
            {
                "name": "http://support.apple.com/kb/HT3937",
                "refsource": "CONFIRM",
                "url": "http://support.apple.com/kb/HT3937"
            },
            {
                "name": "VU#958563",
                "refsource": "CERT-VN",
                "url": "http://www.kb.cert.org/vuls/id/958563"
            }
        ]
    }
}