November 12, 2001
Analysis of SSH crc32 compensation attack detector
Author: JT Smith
Linux Security reports: "On October 6th, 2001, intruders originating from network blocks in the Netherlands used an exploit for the crc32 compensation attack detector vulnerability to remotely compromising a Red Hat Linux system on the UW network running OpenSSH 2.1.1. David Dittrich thoroughly analyses the attack as it happened on a network for which he is responsible."