Description
Buffer overflow in OpenSSH before 2.9.9, and 3.x before 3.2.1, with Kerberos/AFS support and KerberosTgtPassing or AFSTokenPassing enabled, allows remote and local authenticated users to gain privileges.
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by Marcell Fodor · textremotelinux
https://www.exploit-db.com/exploits/21402
References (10)
Core 10
Core References
Patch, Vendor Advisory vdb-entry
x_refsource_xf
http://www.iss.net/security_center/static/8896.php
Third Party Advisory mailing-list
x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2002-04/0298.html
Exploit, Patch, Vendor Advisory vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/4560
Various Sources vendor-advisory
x_refsource_caldera
ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-022.2.txt
Mailing List mailing-list
x_refsource_vuln-dev
http://marc.info/?l=vuln-dev&m=101924296115863&w=2
Mailing List mailing-list
x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=102167972421837&w=2
Third Party Advisory, VDB Entry mailing-list
x_refsource_bugtraq
http://online.securityfocus.com/archive/1/269701
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://www.osvdb.org/781
Third Party Advisory, VDB Entry mailing-list
x_refsource_bugtraq
http://online.securityfocus.com/archive/1/268718
Patch, Vendor Advisory mailing-list
x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2002-04/0394.html
Scores
EPSS
0.0345
EPSS Percentile
87.6%
Details
Status
published
Products (16)
openbsd/openssh
2.1
openbsd/openssh
2.1.1
openbsd/openssh
2.2
openbsd/openssh
2.3
openbsd/openssh
2.5
openbsd/openssh
2.5.1
openbsd/openssh
2.5.2
openbsd/openssh
2.9
openbsd/openssh
2.9.9
openbsd/openssh
2.9p1
... and 6 more
Published
Jun 18, 2002
Tracked Since
Feb 18, 2026