PT-2002-1676 · Openssh+1 · Openssh+1

Publicado

2002-07-03

·

Atualizado

2025-08-07

·

CVE-2002-0639

CVSS v2.0

10

Crítica

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions OpenSSH versions 2.9.9 through 3.3
Description An integer overflow in sshd within OpenSSH versions 2.9.9 through 3.3 can allow remote attackers to execute arbitrary code during ChallengeResponseAuthentication when OpenSSH is configured to use SKEY or BSD AUTH authentication methods.
Recommendations For OpenSSH version 2.9.9 through 3.3, update to a newer, unaffected version.

Exploit

Correção

RCE

Integer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2024-3921
ALT-PU-2024-4077
ALT-PU-2024-4467
ALT-PU-2024-9513
CVE-2002-0639

Produtos afetados

Alt Linux
Openssh