pine-cert-20020301.txt...

- AV AC AU C I A
发布: 2002-03-07
修订: 2025-04-13

An off by one overflow has been discovered in the channel code of OpenSSH versions 2.0 - 3.0.2. Users with an existing user account can abuse this bug to gain root privileges. Exploitability without an existing user account has not been proven but is not considered impossible. A malicious ssh server could also use this bug to exploit a connecting vulnerable client. Fix available here.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息