Terrapin

Vulnerability updated 22 days ago (2024-11-29T13:58:14.561Z)
Download STIX
Preview STIX
Terrapin is a significant vulnerability found in the design and implementation of software, specifically affecting the SSH transport protocol with certain OpenSSH extensions. This flaw, present in versions of OpenSSH before 9.6 and other similar products, enables remote attackers to bypass integrity checks, resulting in some packets being omitted from the extension negotiation message. As a consequence, a client and server may establish a connection where certain security features have been downgraded or entirely disabled. This security loophole is known as a "Terrapin attack" and has the potential to compromise both client and server implementations. The Terrapin attack essentially allows for the downgrading of SSH protocol security, which can expose systems to additional risks. By exploiting this vulnerability, an attacker could weaken the security of a system, making it easier to gain unauthorized access or disrupt its operations. The discovery and subsequent exposure of the Terrapin vulnerability underscore the importance of regular software updates and robust security protocols. It's crucial that users of affected OpenSSH versions and related products update their software to versions where this vulnerability has been addressed. Additionally, ongoing vigilance for new vulnerabilities and prompt action when they are discovered is essential to maintaining secure digital environments.
Description last updated: 2024-11-15T16:05:01.252Z
What's your take? (Question 1 of 5)
Help tune the shared Cybergeist dataset, assist your peers, and earn karma. Expand the panel to get started.
Possible Aliases / Cluster overlaps
It's hard to track cluster overlaps and naming conventions between vendors, so here are some possible overlapping names / profiles you also may want to look at. Create a free account to see the source evidence for each alias, and help fix any errors.
Alias DescriptionVotes
CVE-2023-48795 is a possible alias for Terrapin. CVE-2023-48795 is a significant vulnerability discovered in the Siemens RUGGEDCOM APE1808, specifically in all versions with Palo Alto Networks Virtual NGFW configured to support the CHACHA20-POLY1305 algorithm or any Encrypt-then-MAC algorithms. This flaw, found within the SSH cryptographic network
2
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
SSH
Openssh
Vulnerability
Github
AITM
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Source Document References
Information about the Terrapin Vulnerability was read from the documents corpus below. This display is limited to 20 results, create a free account to see more
PreviewSource LinkCreatedAtTitle
CISA
a month ago
Securityaffairs
4 months ago
Securityaffairs
5 months ago
CERT-EU
a year ago
Securityaffairs
5 months ago
Securityaffairs
5 months ago
Securityaffairs
5 months ago
Securityaffairs
5 months ago
Securityaffairs
6 months ago
Securityaffairs
6 months ago
Securityaffairs
6 months ago
Securityaffairs
7 months ago
Securityaffairs
8 months ago
Securityaffairs
8 months ago
Securityaffairs
8 months ago
Securityaffairs
9 months ago
Securityaffairs
9 months ago
Securityaffairs
9 months ago
CERT-EU
10 months ago
Securityaffairs
a year ago