CVE-2002-0083

CVSS 9.8 - CRITICAL
Description

Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.

Affected Products
38
Vendor Product Version
immunix immunix 7.0
mandrakesoft mandrake_single_network_firewall 7.2
openbsd openssh All versions
openpkg openpkg 1.0
conectiva linux 5.0
conectiva linux 5.1
conectiva linux 6.0
conectiva linux 7.0
conectiva linux ecommerce
conectiva linux graficas
engardelinux secure_linux 1.0.1
mandrakesoft mandrake_linux 7.1
mandrakesoft mandrake_linux 7.2
mandrakesoft mandrake_linux 8.0
mandrakesoft mandrake_linux 8.0
mandrakesoft mandrake_linux 8.1
mandrakesoft mandrake_linux_corporate_server 1.0.1
redhat linux 7.0
redhat linux 7.1
redhat linux 7.2
suse suse_linux 6.4
suse suse_linux 6.4
suse suse_linux 6.4
suse suse_linux 7.0
suse suse_linux 7.0
suse suse_linux 7.0
suse suse_linux 7.0
suse suse_linux 7.1
suse suse_linux 7.1
suse suse_linux 7.1
suse suse_linux 7.1
suse suse_linux 7.2
suse suse_linux 7.3
suse suse_linux 7.3
suse suse_linux 7.3
trustix secure_linux 1.1
trustix secure_linux 1.2
trustix secure_linux 1.5
Weakness Types
CWE-193
CVE Information
CVE ID:
CVE-2002-0083
Published:
2002-03-15
Modified:
2026-04-16
CVSS Score:
9.8
Severity:
CRITICAL
Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Vendors
suse trustix immunix engardelinux openbsd conectiva openpkg redhat mandrakesoft
Quick Actions
CVSS Severity Scale
0.0 - 3.9 LOW
4.0 - 6.9 MEDIUM
7.0 - 8.9 HIGH
9.0 - 10.0 CRITICAL