Live data from Hacker News

Cisco Nexus 9000 Switches Allow SSH As Root

nvd.nist.gov

31–40 of 113 posts

Re: Cisco Nexus 9000 Switches Allow SSH As Root

#32
post #2

If you have the Cisco 9000 Series, patch them now! This SSH backdoor allows an unauthenticated, remote attacker to login as root.

This is exactly why I only buy belkin routers. I can't even connect to it.

Ha! Thanks for making me laugh out loud.

Re: Cisco Nexus 9000 Switches Allow SSH As Root

#33
post #3

This is a pretty egregiously editorialized title; what we know is that there's apparently an SSH keypair authorized on these devices, for which the private key is available on the device. That's a terrible, ugly vulnerability, but it's as likely due to stupidity as to malice. The right title is something like: CVS-2019-1804: Cisco Nexus 9000 Switches Allow SSH As Root.

Ok, we changed to that. Thanks!

Submitted title was "Backdoor Found in Cisco Routers CVE-2019-1804".

Re: Cisco Nexus 9000 Switches Allow SSH As Root

#35
post #3

This is a pretty egregiously editorialized title; what we know is that there's apparently an SSH keypair authorized on these devices, for which the private key is available on the device. That's a terrible, ugly vulnerability, but it's as likely due to stupidity as to malice. The right title is something like: CVS-2019-1804: Cisco Nexus 9000 Switches Allow SSH As Root.

It's still a bit editorialized since this only affects ACI mode, not the default (and far more common) NX-OS mode.

Re: Cisco Nexus 9000 Switches Allow SSH As Root

#36
post #2

If you have the Cisco 9000 Series, patch them now! This SSH backdoor allows an unauthenticated, remote attacker to login as root.

Nexus 9000, running ACI, not normal NX-OS, as opposed to the ASR 9000 series which are common internet routers.

Cisco model numbers are fun.

Re: Cisco Nexus 9000 Switches Allow SSH As Root

#37

Western governments: Huawei needs to be banned from our collective infrastructure because backdoors Also western governments: Cisco will remedy their errors

HackerNews: Huueerrggg Huawei can't even write secure code Cisco: Hold my beer

The Huawei stuff is pretty bad, but the comments read like they've been copied pasted each time here. It's the exact same talking points.

Re: Cisco Nexus 9000 Switches Allow SSH As Root

#38
post #3

This is a pretty egregiously editorialized title; what we know is that there's apparently an SSH keypair authorized on these devices, for which the private key is available on the device. That's a terrible, ugly vulnerability, but it's as likely due to stupidity as to malice. The right title is something like: CVS-2019-1804: Cisco Nexus 9000 Switches Allow SSH As Root.

It is impossible to know the motivation of the person who put this here but these constructs have no place in firmware for critical devices and Cisco should have known that for a long time already. Either they truly are idiots or this is malicious.

More likely they are just imperfect humans.

Re: Cisco Nexus 9000 Switches Allow SSH As Root

#39
post #19

Earlier quoted context omitted.

What is a backdoor if not this?

A backdoor to me suggests an intentional loophole through a level of security. A bug that does the same is severe, but isn't intentional. At least that's my reading.

But any competently inserted intentional backdoor is going to be indistinguishable from a mistake.

If Cisco had some SecretFBIChinaBackdoor() function somewhere the backlash would be way way worse (or at least an unknown). Whereas at this point it's abundantly clear that serious "non intentional" security vulnerabilities in networking hardware basically go ignored by the market.

Post reply on HN