> Source: [sk36343](https://support.checkpoint.com/results/sk/sk36343)

# sk36343 - Check Point Response to CVE-2008-5161 - OpenSSH CBC mode information disclosure vulnerability

| Property | Value |
|----------|-------|
| Solution ID | sk36343 |
| Date Created | 2008-11-21 |
| Last Modified | 2025-02-09 |
| Technical Level | General |
| Products | Security Gateway, Security Management Server, Multi-Domain Security Management Server |
| Versions | R82.10, R82, R81.20, R82.10, R82, R81.20, R82.10, R81 (EOS), R81 (EOS), R81 (EOS), R81.20, R82 |
| OS | Gaia |

## Symptoms

- * CPNI has published [CVE-2008-5161](https://www.cve.org/CVERecord?id=CVE-2008-5161) regarding a weakness in the Cipher-Block Chaining (CBC) mode of the SSH protocol.  

* This vulnerability affects the OpenSSH package distributed with SecurePlatform / Gaia OS.  

* Security impact of this vulnerability is insignificant.

## Cause

This weakness could allow an attacker who is able to inject arbitrary data into an SSH session to recover up to 32 bits (4 bytes) of data by causing an error condition.   
This attack method causes the SSH session to terminate and therefore cannot be used to obtain arbitrary amounts of data from a given session.  

The attack requires a high degree of control over the local network (i.e., knowledge of ongoing SSH sessions, their IP addresses, ports and sequence numbers), has a very low probability of being successful (2^-18^), and allows the attacker to determine very limited amount of information (4 bytes). Therefore, it does not pose a significant threat to the security in SSH on SecurePlatform / Gaia OS.

## Solution

Since this issue cannot be practically exploited, Check Point will not fix it.  

**Note:** This article is not relevant to Gaia Embedded OS (on SMB / Quantum Spark appliances) that does not use OpenSSH.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
