CVE-2002-0765Openssh vulnerability

5 documents5 sources
Severity
7.5HIGHNVD
EPSS
0.6%
top 30.45%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 12
Latest updateApr 30

Description

sshd in OpenSSH 3.2.2, when using YP with netgroups and under certain conditions, may allow users to successfully authenticate and log in with another user's password.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages3 packages

Debianopenbsd/openssh< 1:3.3p1-0.0woody1+3
NVDopenbsd/openssh3.2.2

Patches

🔴Vulnerability Details

3
GHSA
GHSA-hw3r-x5qh-749j: sshd in OpenSSH 32022-04-30
CVEList
CVE-2002-0765: sshd in OpenSSH 32003-04-02
OSV
CVE-2002-0765: sshd in OpenSSH 32002-08-12

📋Vendor Advisories

1
Debian
CVE-2002-0765: openssh - sshd in OpenSSH 3.2.2, when using YP with netgroups and under certain conditions...2002
CVE-2002-0765 — Openbsd Openssh vulnerability | cvebase