CVE

Id
10495  
CVE No.
CVE-2004-2069  
Status
Candidate  
Description
sshd.c in OpenSSH 3.6.1p2 and 3.7.1p2 and possibly other versions, when using privilege separation, does not properly signal the non-privileged process when a session has been terminated after exceeding the LoginGraceTime setting, which leaves the connection open and allows remote attackers to cause a denial of service (connection consumption).  
Phase
Assigned (20050505)  
Votes
None (candidate not yet proposed)  
Comments