Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2003-0826

lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) client_keyexchange.c when long input is provided, which could allow remote attackers to execute arbitrary code via a heap-based buffer overflow attack.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.273
EPSS Ranking 96.1%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2003-0826
  • Gnu » Lsh » Version: 1.4
    cpe:2.3:a:gnu:lsh:1.4
  • Gnu » Lsh » Version: 1.4.1
    cpe:2.3:a:gnu:lsh:1.4.1
  • Gnu » Lsh » Version: 1.4.2
    cpe:2.3:a:gnu:lsh:1.4.2


Contact Us

Shodan ® - All rights reserved