SSH before 2.0 disables host key checking when connecting to the localhost, which allows remote attackers to silently redirect connections to the localhost by poisoning the client's DNS cache.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2005-04-21T04:00:00
Updated: 2024-08-08T04:58:11.156Z
Reserved: 2005-04-21T00:00:00
Link: CVE-2001-1474
Vulnrichment
No data.
NVD
Status : Modified
Published: 2001-01-18T05:00:00.000
Modified: 2017-07-11T01:29:09.197
Link: CVE-2001-1474
Redhat
No data.