Avoid false positive in ipmi-cipher-zero. Closes #1022

This commit is contained in:
dmiller 2017-10-04 18:27:29 +00:00
parent 7aeb2ada62
commit f4b7c6f09d
2 changed files with 5 additions and 1 deletions

View file

@ -1,5 +1,9 @@
#s wa Nmap Changelog ($Id$); -*-text-*-
o [NSE][GH#1022] Fix a false positive condition in ipmi-cipher-zero caused by
not checking the error code in responses. Implementations which return an
error are not vulnerable. [Juho Jokelainen]
o [GH#978] Fixed Nsock on Windows giving errors when selecting on STDIN. This
was causing Ncat 7.60 in connect mode to quit with error:
libnsock select_loop(): nsock_loop error 10038: An operation was attempted on something that is not a socket.

View file

@ -95,7 +95,7 @@ functionality
nmap.set_port_state(host, port, "open")
local info = ipmi.parse_open_session_reply(reply)
if info["session_payload_type"] == ipmi.PAYLOADS["RMCPPLUSOPEN_REP"] then
if info["session_payload_type"] == ipmi.PAYLOADS["RMCPPLUSOPEN_REP"] and info["error_code"] == 0 then
vuln_table.state = vulns.STATE.VULN
end