CVE-2006-5484
CVSS 5.0 - MEDIUM
Description
SSH Tectia Client/Server/Connector 5.1.0 and earlier, Manager 2.2.0 and earlier, and other products, when using an RSA key with exponent 3, removes PKCS-1 padding before generating a hash, which allows remote attackers to forge a PKCS #1 v1.5 signature that is signed by that RSA key and prevents Tectia from correctly verifying X.509 and other certificates that use PKCS #1, a similar issue to CVE-2006-4339.
Affected Products
4| Vendor | Product | Version |
|---|---|---|
| ssh | tectia_client |
All versions
|
| ssh | tectia_connector |
All versions
|
| ssh | tectia_manager |
All versions
|
| ssh | tectia_server |
All versions
|
References
Weakness Types
NVD-CWE-Other
CVE Information
- CVE ID:
CVE-2006-5484- Published:
- 2006-10-24
- Modified:
- 2026-04-23
- CVSS Score:
- 5.0
- Severity:
- MEDIUM
- Vector:
AV:N/AC:L/Au:N/C:N/I:P/A:N
Affected Vendors
ssh
Quick Actions
CVSS Severity Scale
0.0 - 3.9
LOW
4.0 - 6.9
MEDIUM
7.0 - 8.9
HIGH
9.0 - 10.0
CRITICAL