Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2002-0083


Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.


Published

2002-03-15T05:00:00.000

Last Modified

2025-04-03T01:03:51.193

Status

Deferred

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

10.0

Impact Score

10.0

Weaknesses
  • Type: Primary
    CWE-193

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application immunix immunix 7.0 Yes
Application mandrakesoft mandrake_single_network_firewall 7.2 Yes
Application openbsd openssh < 3.1 Yes
Application openpkg openpkg 1.0 Yes
Operating System conectiva linux 5.0 Yes
Operating System conectiva linux 5.1 Yes
Operating System conectiva linux 6.0 Yes
Operating System conectiva linux 7.0 Yes
Operating System conectiva linux ecommerce Yes
Operating System conectiva linux graficas Yes
Operating System engardelinux secure_linux 1.0.1 Yes
Operating System mandrakesoft mandrake_linux 7.1 Yes
Operating System mandrakesoft mandrake_linux 7.2 Yes
Operating System mandrakesoft mandrake_linux 8.0 Yes
Operating System mandrakesoft mandrake_linux 8.0 Yes
Operating System mandrakesoft mandrake_linux 8.1 Yes
Operating System mandrakesoft mandrake_linux_corporate_server 1.0.1 Yes
Operating System redhat linux 7.0 Yes
Operating System redhat linux 7.1 Yes
Operating System redhat linux 7.2 Yes
Operating System suse suse_linux 6.4 Yes
Operating System suse suse_linux 6.4 Yes
Operating System suse suse_linux 6.4 Yes
Operating System suse suse_linux 7.0 Yes
Operating System suse suse_linux 7.0 Yes
Operating System suse suse_linux 7.0 Yes
Operating System suse suse_linux 7.0 Yes
Operating System suse suse_linux 7.1 Yes
Operating System suse suse_linux 7.1 Yes
Operating System suse suse_linux 7.1 Yes
Operating System suse suse_linux 7.1 Yes
Operating System suse suse_linux 7.2 Yes
Operating System suse suse_linux 7.3 Yes
Operating System suse suse_linux 7.3 Yes
Operating System suse suse_linux 7.3 Yes
Operating System trustix secure_linux 1.1 Yes
Operating System trustix secure_linux 1.2 Yes
Operating System trustix secure_linux 1.5 Yes

References