CVE Vulnerabilities

CVE-2001-1475

Published: Jan 18, 2001 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

SSH before 2.0, when using RC4 and password authentication, allows remote attackers to replay messages until a new server key (VK) is generated.

Affected Software

NameVendorStart VersionEnd Version
SshSsh1.2.24 (including)1.2.24 (including)
SshSsh1.2.25 (including)1.2.25 (including)
SshSsh1.2.26 (including)1.2.26 (including)
SshSsh1.2.27 (including)1.2.27 (including)
SshSsh1.2.28 (including)1.2.28 (including)
SshSsh1.2.29 (including)1.2.29 (including)
SshSsh1.2.30 (including)1.2.30 (including)
SshSsh1.2.31 (including)1.2.31 (including)

References