CVE Vulnerabilities

CVE-2005-2797

Published: Sep 06, 2005 | Modified: Dec 08, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

OpenSSH 4.0, and other versions before 4.2, does not properly handle dynamic port forwarding (-D option) when a listen address is not provided, which may cause OpenSSH to enable the GatewayPorts functionality.

Affected Software

Name Vendor Start Version End Version
Openssh Openbsd 4.0 (including) 4.0 (including)
Openssh Ubuntu dapper *
Openssh Ubuntu devel *
Openssh Ubuntu edgy *
Openssh Ubuntu feisty *

References