mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-29 05:56:59 +00:00
143 lines
4.5 KiB
JSON
143 lines
4.5 KiB
JSON
{
|
|
"CVE_data_meta" : {
|
|
"ASSIGNER" : "cve@mitre.org",
|
|
"ID" : "CVE-2002-0640",
|
|
"STATE" : "PUBLIC"
|
|
},
|
|
"affects" : {
|
|
"vendor" : {
|
|
"vendor_data" : [
|
|
{
|
|
"product" : {
|
|
"product_data" : [
|
|
{
|
|
"product_name" : "n/a",
|
|
"version" : {
|
|
"version_data" : [
|
|
{
|
|
"version_value" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format" : "MITRE",
|
|
"data_type" : "CVE",
|
|
"data_version" : "4.0",
|
|
"description" : {
|
|
"description_data" : [
|
|
{
|
|
"lang" : "eng",
|
|
"value" : "Buffer overflow in sshd in OpenSSH 2.3.1 through 3.3 may allow remote attackers to execute arbitrary code via a large number of responses during challenge response authentication when OpenBSD is using PAM modules with interactive keyboard authentication (PAMAuthenticationViaKbdInt)."
|
|
}
|
|
]
|
|
},
|
|
"problemtype" : {
|
|
"problemtype_data" : [
|
|
{
|
|
"description" : [
|
|
{
|
|
"lang" : "eng",
|
|
"value" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references" : {
|
|
"reference_data" : [
|
|
{
|
|
"name" : "20020626 Revised OpenSSH Security Advisory (adv.iss)",
|
|
"refsource" : "BUGTRAQ",
|
|
"url" : "http://marc.info/?l=bugtraq&m=102514631524575&w=2"
|
|
},
|
|
{
|
|
"name" : "20020626 OpenSSH Security Advisory (adv.iss)",
|
|
"refsource" : "BUGTRAQ",
|
|
"url" : "http://marc.info/?l=bugtraq&m=102514371522793&w=2"
|
|
},
|
|
{
|
|
"name" : "20020627 How to reproduce OpenSSH Overflow.",
|
|
"refsource" : "BUGTRAQ",
|
|
"url" : "http://marc.info/?l=bugtraq&m=102521542826833&w=2"
|
|
},
|
|
{
|
|
"name" : "20020628 Sun statement on the OpenSSH Remote Challenge Vulnerability",
|
|
"refsource" : "BUGTRAQ",
|
|
"url" : "http://marc.info/?l=bugtraq&m=102532054613894&w=2"
|
|
},
|
|
{
|
|
"name" : "VU#369347",
|
|
"refsource" : "CERT-VN",
|
|
"url" : "http://www.kb.cert.org/vuls/id/369347"
|
|
},
|
|
{
|
|
"name" : "CA-2002-18",
|
|
"refsource" : "CERT",
|
|
"url" : "http://www.cert.org/advisories/CA-2002-18.html"
|
|
},
|
|
{
|
|
"name" : "DSA-134",
|
|
"refsource" : "DEBIAN",
|
|
"url" : "http://www.debian.org/security/2002/dsa-134"
|
|
},
|
|
{
|
|
"name" : "HPSBUX0206-195",
|
|
"refsource" : "HP",
|
|
"url" : "http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX0206-195"
|
|
},
|
|
{
|
|
"name" : "5093",
|
|
"refsource" : "BID",
|
|
"url" : "http://www.securityfocus.com/bid/5093"
|
|
},
|
|
{
|
|
"name" : "RHSA-2002:131",
|
|
"refsource" : "REDHAT",
|
|
"url" : "http://www.redhat.com/support/errata/RHSA-2002-131.html"
|
|
},
|
|
{
|
|
"name" : "CSSA-2002-030.0",
|
|
"refsource" : "CALDERA",
|
|
"url" : "ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-030.0.txt"
|
|
},
|
|
{
|
|
"name" : "CLA-2002:502",
|
|
"refsource" : "CONECTIVA",
|
|
"url" : "http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000502"
|
|
},
|
|
{
|
|
"name" : "ESA-20020702-016",
|
|
"refsource" : "ENGARDE",
|
|
"url" : "http://www.linuxsecurity.com/advisories/other_advisory-2177.html"
|
|
},
|
|
{
|
|
"name" : "MDKSA-2002:040",
|
|
"refsource" : "MANDRAKE",
|
|
"url" : "http://www.mandrakesoft.com/security/advisories?name=MDKSA-2002:040"
|
|
},
|
|
{
|
|
"name" : "SuSE-SA:2002:024",
|
|
"refsource" : "SUSE",
|
|
"url" : "http://www.novell.com/linux/security/advisories/2002_024_openssh_txt.html"
|
|
},
|
|
{
|
|
"name" : "RHSA-2002:127",
|
|
"refsource" : "REDHAT",
|
|
"url" : "http://www.redhat.com/support/errata/RHSA-2002-127.html"
|
|
},
|
|
{
|
|
"name" : "839",
|
|
"refsource" : "OSVDB",
|
|
"url" : "http://www.osvdb.org/839"
|
|
}
|
|
]
|
|
}
|
|
}
|