OpenSSH before 2.9.9, while using keypairs and multiple keys of different types in the ~/.ssh/authorized_keys2 file, may not properly handle the "from" option associated with a key, which could allow remote attackers to login from unauthorized IP addresses.
References
Configurations
History
20 Nov 2024, 23:37
Type | Values Removed | Values Added |
---|---|---|
References | () http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000431 - | |
References | () http://download.immunix.org/ImmunixOS/7.0/updates/IMNX-2001-70-034-01 - | |
References | () http://marc.info/?l=bugtraq&m=100154541809940&w=2 - | |
References | () http://rhn.redhat.com/errata/RHSA-2001-114.html - Patch, Vendor Advisory | |
References | () http://www.ciac.org/ciac/bulletins/m-010.shtml - | |
References | () http://www.kb.cert.org/vuls/id/905795 - US Government Resource | |
References | () http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-081.php - | |
References | () http://www.osvdb.org/642 - | |
References | () http://www.securityfocus.com/bid/3369 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/7179 - |
Information
Published : 2001-10-18 04:00
Updated : 2024-11-20 23:37
NVD link : CVE-2001-1380
Mitre link : CVE-2001-1380
CVE.ORG link : CVE-2001-1380
JSON object : View
Products Affected
openbsd
- openssh
CWE