20010116 Bug in SSH1 secure-RPC support can expose users' private keysmailing list
http://archives.neohapsis.com/archives/bugtraq/2001-01/0262.html CVE-2001-0259
SSH 1.2.x - Secure-RPC Weak Encrypted Authentication
Record summary
CVE-2001-0259 has a selected CVSS score of 3.6; EIP currently links 1 catalogued exploit.
Description
ssh-keygen in ssh 1.2.27 - 1.2.30 with Secure-RPC can allow local attackers to recover a SUN-DES-1 magic phrase generated by another user, which the attacker can use to decrypt that user's private key file.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBSSH 1.2.x - Secure-RPC Weak Encrypted AuthenticationExploitDB exploitby Richard SilvermanNot analyzed1 file
References
52222vdb entry
http://www.securityfocus.com/bid/2222 ssh.comConfirmation
http://www.ssh.com/products/ssh/patches/secureRPCvulnerability.html ssh-rpc-private-key(5963)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/5963 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2001-0259