SSH 1.2.27 with Kerberos authentication support stores Kerberos tickets in a file which is created in the current directory of the user who is logging in, which could allow remote attackers to sniff the ticket cache if the home directory is installed on NFS.
References
Configurations
History
20 Nov 2024, 23:32
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=96256265914116&w=2 - | |
References | () http://www.securityfocus.com/bid/1426 - Patch, Vendor Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/4903 - |
Information
Published : 2000-07-05 04:00
Updated : 2024-11-20 23:32
NVD link : CVE-2000-0575
Mitre link : CVE-2000-0575
CVE.ORG link : CVE-2000-0575
JSON object : View
Products Affected
ssh
- ssh
CWE