VDB
CVE-2002-0083
CVE-2002-0083
PUBLISHED
CVSS 9.800000190734863 CRITICAL
Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.
EPSS 14.69% · 96.3th percentile
Risk Scores
CVSS 3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
14.69%
96.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| suse | suse_linux | 6.4, 7.1, 6.4 |
| redhat | linux | 7.2, 7.0, 7.1 |
| mandrakesoft | mandrake_single_network_firewall | 7.2 |
| openbsd | openssh | 2.0 |
| mandrakesoft | mandrake_linux_corporate_server | 1.0.1 |
| trustix | secure_linux | 1.2, 1.5, 1.1 |
| engardelinux | secure_linux | 1.0.1 |
| conectiva | linux | graficas, 5.1, 6.0 |
| n/a | n/a | n/a |
| mandrakesoft | mandrake_linux | 8.0, 7.2, 8.1 |
| immunix | immunix | 7.0 |
| openpkg | openpkg | 1.0 |
Timeline
- Mar 7, 2002 CVE Published
- Feb 4, 2022 EPSS Score
- May 21, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 19, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 18, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
- Dec 23, 2023 EPSS Score
- Feb 14, 2024 EPSS Score
References
- CSSA-2002-SCO.10 vendor-advisory
- 4241 vdb
- ESA-20020307-007 vendor-advisory
- RHSA-2002:043 vendor-advisory
- 20020328 OpenSSH channel_lookup() off by one exploit mailing-list
- 20020307 [VulnWatch] [PINE-CERT-20020301] OpenSSH off-by-one mailing-list
- 20020310 OpenSSH 2.9.9p2 packages for Immunix 6.2 with latest fix mailing-list
- NetBSD-SA2002-004 vendor-advisory
- 20020307 OpenSSH Security Advisory (adv.channelalloc) mailing-list
- openssh-channel-error(8383) vdb
- https://nvd.nist.gov/vuln/detail/CVE-2002-0083 advisory
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000467 url
- http://marc.info/?l=bugtraq&m=101552065005254&w=2 url
- http://online.securityfocus.com/advisories/3960 url
- http://www.debian.org/security/2002/dsa-119 url
- http://www.openbsd.org/advisories/ssh_channelalloc.txt url
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:13.openssh.asc technical
- ftp://stage.caldera.com/pub/security/openunix/CSSA-2002-SCO.11/CSSA-2002-SCO.11.txt technical
- http://archives.neohapsis.com/archives/bugtraq/2002-03/0108.html technical
- http://marc.info/?l=bugtraq&m=101561384821761&w=2 mailing_list
…and 4 more