VDB

DEBIAN-CVE-2003-0386

DEBIAN-CVE-2003-0386 PUBLISHED

OpenSSH 3.6.1 and earlier, when restricting host access by numeric IP addresses and with VerifyReverseMapping disabled, allows remote attackers to bypass "from=" and "user@host" address restrictions by connecting to a host from a system whose reverse DNS hostname contains the numeric IP address.

Affected Products

VendorProductVersions
Debian:14openssh0, 0, 0
Debian:11openssh0, 0, 0
Debian:13openssh0, 0, 0
Debian:12openssh0, 0, 0

Timeline

  • Jul 2, 2003 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›