VDB
RHSA-2003:280
RHSA-2003:280
PUBLISHED
Updated OpenSSH packages are now available that fix bugs that may be remotely exploitable. [Updated 17 Sep 2003] Updated packages are now available to fix additional buffer manipulation problems which were fixed in OpenSSH 3.7.1. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2003-0695 to these additional issues. We have also included fixes from Solar Designer for some additional memory bugs. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2003-0682 to these issues.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Linux Advanced Workstation 2.1 | ||
| Red Hat Enterprise Linux ES version 2.1 | ||
| Red Hat Enterprise Linux AS (Advanced Server) version 2.1 | ||
| Red Hat Enterprise Linux WS version 2.1 |
Timeline
- Sep 16, 2003 CVE Published
- Nov 21, 2025 CVE Updated
- Apr 9, 2026 Distribution Patch
- Apr 9, 2026 Distribution Patch
- Aug 7, 2026 Security Advisory
- Aug 7, 2026 Security Advisory
- Aug 7, 2026 Security Advisory
- Aug 7, 2026 Security Advisory
References
- https://bugzilla.redhat.com/show_bug.cgi?id=104490 url
- https://access.redhat.com/errata/RHSA-2003:280 fix
- https://security.access.redhat.com/data/csaf/v2/advisories/2003/rhsa-2003_280.json advisory
- https://access.redhat.com/security/updates/classification/#critical url
- http://www.openssh.com/txt/buffer.adv url