CVE-2001-1470
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/01/2001
Last modified:
11/07/2017
Description
The IDEA cipher as implemented by SSH1 does not protect the final block of a message against modification, which allows remote attackers to modify the block without detection by changing its cyclic redundancy check (CRC) to match the modifications to the message.
Impact
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:ssh:ssh:1.2.24:*:*:*:*:*:*:* | ||
cpe:2.3:a:ssh:ssh:1.2.25:*:*:*:*:*:*:* | ||
cpe:2.3:a:ssh:ssh:1.2.26:*:*:*:*:*:*:* | ||
cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:* | ||
cpe:2.3:a:ssh:ssh:1.2.28:*:*:*:*:*:*:* | ||
cpe:2.3:a:ssh:ssh:1.2.29:*:*:*:*:*:*:* | ||
cpe:2.3:a:ssh:ssh:1.2.30:*:*:*:*:*:*:* | ||
cpe:2.3:a:ssh:ssh:1.2.31:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page