Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Duminda_SAT
Contributor
Jump to solution

ssh version hide while telnet to gateway port 22

Hi, 

when i telnet to gateway port 22 that will shows our openssl version details how to change this or how to hide this? 

i have tried to edit /sbin/ssh file. but its cannot edit its non readerble format 

 

Kindly advice. 

Thank you.

0 Kudos
1 Solution

Accepted Solutions
Chris_Atkinson
Employee Employee
Employee

As indicated above solely the version reported is not representative of exposure to a given CVE.

Moreover note the "Disputed" status of each of those CVEs...

 

Refer also:
sk65269: Status of OpenSSH CVEs
sk100647: Check Point response to common false positives scanning results

CCSM R77/R80/ELITE

View solution in original post

(1)
3 Replies
Chris_Atkinson
Employee Employee
Employee

Openssl or Openssh?

I don't think this is possible per the RFC that pertains to SSH which states this info MUST be included from memory.

Our implementation is a hardened version, the numeric value in this case is not necessarily representative of the patch level and as such is masked.

 

CCSM R77/R80/ELITE
0 Kudos
Duminda_SAT
Contributor

Hi Chris, thank you so much for the update.

can we upgrade the OpenSSH version because we had scanning using Nessus it's showing below high CVE for OpenSSH. one of our gateway running with R80.30 Take 254. we have planned to upgrade next month. until now we need to fix this openssh issue. kindly advice. 

CVE-2016-20012,
CVE-2020-15778,
CVE-2021-36368

 

Thank you,

Duminda

 

0 Kudos
Chris_Atkinson
Employee Employee
Employee

As indicated above solely the version reported is not representative of exposure to a given CVE.

Moreover note the "Disputed" status of each of those CVEs...

 

Refer also:
sk65269: Status of OpenSSH CVEs
sk100647: Check Point response to common false positives scanning results

CCSM R77/R80/ELITE
(1)

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events