CVE-1999-1010

OpenSSH - Unauthenticated Cipher Policy Bypass via 'none' Cipher

Title source: llm
STIX 2.1

Description

An SSH 1.2.27 server allows a client to use the "none" cipher, even if it is not allowed by the server policy.

References (1)

Core 1
Core References
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=94519142415338&w=2

Scores

EPSS 0.0024
EPSS Percentile 47.7%

Details

Status published
Products (1)
openbsd/openssh 1.2.27
Published Dec 14, 1999
Tracked Since Feb 18, 2026