Vulnerabilities
Vulnerable Software
Gnu:  >> Lsh  Security Vulnerabilities
unix_random.c in lshd for lsh 2.0.1 leaks file descriptors related to the randomness generator, which allows local users to cause a denial of service by truncating the seed file, which prevents the server from starting, or obtain sensitive seed information that could be used to crack keys.
CVSS Score
3.6
EPSS Score
0.001
Published
2006-01-22
lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) client_keyexchange.c when long input is provided, which could allow remote attackers to execute arbitrary code via a heap-based buffer overflow attack.
CVSS Score
7.5
EPSS Score
0.273
Published
2003-10-06


Contact Us

Shodan ® - All rights reserved