RULE(RULE ID:710628)

Rule General Information
Release Date: 2017-01-19
Rule Name: Openssh Kex_input_kexinit Denial of Service Vulnerability (CVE-2016-8858)
Severity:
CVE ID:
Rule Protection Details
Description: The kex_input_kexinit function in kex.c in OpenSSH 6.x and 7.x through 7.3 allows remote attackers to cause a denial of service (memory consumption) by sending many duplicate KEXINIT requests.
Impact: An attacker can launch a denial of service attack by exploiting the vulnerability successfully.
Affected OS: Others
Reference: SecurityFocusBID:93776
SecurityTrackerID:1037057
Solutions
More advisories have been published on the website, please visit for more suggestions:
https://ftp.openbsd.org/pub/OpenBSD/patches/6.0/common/013_ssh_kexinit.patch.sig