First published: Tue Jun 11 2002(Updated: )
Bitvise WinSSHD before 2002-03-16 allows remote attackers to cause a denial of service (resource exhaustion) via a large number of incomplete connections that are not properly terminated, which are not properly freed by SSHd.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bitvise WinSSHD | =1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2002-0460 is considered moderate, as it can lead to denial of service by exhausting resources.
To fix CVE-2002-0460, upgrade to a version of Bitvise WinSSHD released after March 16, 2002, which includes patches for this vulnerability.
CVE-2002-0460 affects versions of Bitvise WinSSHD prior to 1.1 released on March 16, 2002.
Exploiting CVE-2002-0460 allows remote attackers to overwhelm the server with a large number of incomplete connections, effectively causing a denial of service.
CVE-2002-0460 is less relevant in modern systems that have updated software, but older versions of Bitvise WinSSHD still pose a risk if not patched.