CVE-2002-0083

CVSS 9.8 - CRITICAL
Description

Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.

Affected Products
38
Vendor Product Version
immunix immunix 7.0
mandrakesoft mandrake_single_network_firewall 7.2
openbsd openssh All versions
openpkg openpkg 1.0
conectiva linux 5.0
conectiva linux 5.1
conectiva linux 6.0
conectiva linux 7.0
conectiva linux ecommerce
conectiva linux graficas
engardelinux secure_linux 1.0.1
mandrakesoft mandrake_linux 7.1
mandrakesoft mandrake_linux 7.2
mandrakesoft mandrake_linux 8.0
mandrakesoft mandrake_linux 8.0
mandrakesoft mandrake_linux 8.1
mandrakesoft mandrake_linux_corporate_server 1.0.1
redhat linux 7.0
redhat linux 7.1
redhat linux 7.2
suse suse_linux 6.4
suse suse_linux 6.4
suse suse_linux 6.4
suse suse_linux 7.0
suse suse_linux 7.0
suse suse_linux 7.0
suse suse_linux 7.0
suse suse_linux 7.1
suse suse_linux 7.1
suse suse_linux 7.1
suse suse_linux 7.1
suse suse_linux 7.2
suse suse_linux 7.3
suse suse_linux 7.3
suse suse_linux 7.3
trustix secure_linux 1.1
trustix secure_linux 1.2
trustix secure_linux 1.5
Weakness Types
CWE-193
CVE Information
CVE ID:
CVE-2002-0083
Published:
2002-03-15
Modified:
2025-04-03
CVSS Score:
9.8
Severity:
CRITICAL
Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Vendors
redhat mandrakesoft openbsd conectiva trustix openpkg immunix engardelinux suse
Quick Actions
CVSS Severity Scale
0.0 - 3.9 LOW
4.0 - 6.9 MEDIUM
7.0 - 8.9 HIGH
9.0 - 10.0 CRITICAL