CyberSec.Space Logo
Back to CVE Browser

CVE-2002-0640

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1650%
EPSS Percentile42.69th
PublishedJul 3, 2002
Last ModifiedApr 16, 2026

Vulnerability Description

Buffer overflow in sshd in OpenSSH 2.3.1 through 3.3 may allow remote attackers to execute arbitrary code via a large number of responses during challenge response authentication when OpenBSD is using PAM modules with interactive keyboard authentication (PAMAuthenticationViaKbdInt).

Affected Platforms (CPE)

πŸ“¦
Openbsd

Openssh

= 1.2.2
πŸ“¦
Openbsd

Openssh

= 1.2.3
πŸ“¦
Openbsd

Openssh

= 2.1
πŸ“¦
Openbsd

Openssh

= 2.1.1
πŸ“¦
Openbsd

Openssh

= 2.2
πŸ“¦
Openbsd

Openssh

= 2.3
πŸ“¦
Openbsd

Openssh

= 2.5
πŸ“¦
Openbsd

Openssh

= 2.5.1
πŸ“¦
Openbsd

Openssh

= 2.5.2
πŸ“¦
Openbsd

Openssh

= 2.9
πŸ“¦
Openbsd

Openssh

= 2.9.9
πŸ“¦
Openbsd

Openssh

= 2.9p1
πŸ“¦
Openbsd

Openssh

= 2.9p2
πŸ“¦
Openbsd

Openssh

= 3.0
πŸ“¦
Openbsd

Openssh

= 3.0.1
πŸ“¦
Openbsd

Openssh

= 3.0.1p1
πŸ“¦
Openbsd

Openssh

= 3.0.2
πŸ“¦
Openbsd

Openssh

= 3.0.2p1
πŸ“¦
Openbsd

Openssh

= 3.0p1
πŸ“¦
Openbsd

Openssh

= 3.1
πŸ“¦
Openbsd

Openssh

= 3.1p1
πŸ“¦
Openbsd

Openssh

= 3.2
πŸ“¦
Openbsd

Openssh

= 3.2.2p1
πŸ“¦
Openbsd

Openssh

= 3.2.3p1
πŸ“¦
Openbsd

Openssh

= 3.3
πŸ“¦
Openbsd

Openssh

= 3.3p1

References & Advisories

Related Vulnerabilities