The PAM conversation function in OpenSSH 3.7.1 and 3.7.1p1 interprets an array of structures as an array of pointers, which allows attackers to modify the stack and possibly gain privileges.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2003-09-25T04:00:00

Updated: 2024-08-08T02:05:12.569Z

Reserved: 2003-09-17T00:00:00

Link: CVE-2003-0787

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2003-11-17T05:00:00.000

Modified: 2008-09-10T19:20:26.163

Link: CVE-2003-0787

cve-icon Redhat

No data.