HomeDefectsLIN1024-2504
Fixed

LIN1024-2504 : Security Advisory - openssh - CVE-2002-0640

Created: Jul 2, 2024    Updated: Aug 28, 2024
Resolved Date: Jul 8, 2024
Found In Version: 10.24.33.1
Severity: Standard
Applicable for: Wind River Linux LTS 24
Component/s: Userspace

Description

Buffer overflow in sshd in OpenSSH 2.3.1 through 3.3 may allow remote attackers to execute arbitrary code via a large number of responses during challenge response authentication when OpenBSD is using PAM modules with interactive keyboard authentication (PAMAuthenticationViaKbdInt).

CREATE(Triage):(User=admin) CVE-2002-0640 (https://nvd.nist.gov/vuln/detail/CVE-2002-0640)