CVE-2002-0765
EPSS 0.60%
Description
sshd in OpenSSH 3.2.2, when using YP with netgroups and under certain conditions, may allow users to successfully authenticate and log in with another user's password.
How to fix CVE-2002-0765
To remediate CVE-2002-0765, upgrade the affected package to a fixed version below.
- Debian/openssh—upgrade to 1:3.3p1-0.0woody1 or later
Is CVE-2002-0765 being exploited?
Low — EPSS is 0.6%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 1:3.3p1-0.0woody1