Vulnerability Details CVE-2008-2285
The ssh-vulnkey tool on Ubuntu Linux 7.04, 7.10, and 8.04 LTS does not recognize authorized_keys lines that contain options, which makes it easier for remote attackers to exploit CVE-2008-0166 by guessing a key that was not identified by this tool.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.2%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2008-2285
-
cpe:2.3:a:ubuntu:linux:7.04
-
cpe:2.3:a:ubuntu:linux:7.10
-
cpe:2.3:a:ubuntu:linux:8.04