CVE-2003-0693

Impact:
Critical
Public Date:
2003-09-15
Bugzilla:
1617069: CVE-2003-0693 security flaw

The MITRE CVE dictionary describes this issue as:

A "buffer management error" in buffer_append_space of buffer.c for OpenSSH before 3.7 may allow remote attackers to execute arbitrary code by causing an incorrect amount of memory to be freed and corrupting the heap, a different vulnerability than CVE-2003-0695.

Find out more about CVE-2003-0693 from the MITRE CVE dictionary dictionary and NIST NVD.

Statement

Not vulnerable.

This flaw is fixed in Red Hat Enterprise Linux 2.1 via the errata RHSA-2003:280.

This flaw is fixed in Red Hat Enterprise Linux 3 as a backported patch. The source RPM contains the patch openssh-3.6.1p2-owl-realloc.diff which resolved this flaw before Red Hat Enterprise Linux 3 GA.

This flaw does not affect any subsequent versions of Red Hat Enterprise Linux.

Red Hat Security Errata

Platform Errata Release Date
Red Hat Linux 8.0 RHSA-2003:279 2003-09-16
Red Hat Linux 7.1 RHSA-2003:279 2003-09-16
Red Hat Linux 9 RHSA-2003:279 2003-09-16
Red Hat Linux 7.2 RHSA-2003:279 2003-09-16
Red Hat Linux 7.3 RHSA-2003:279 2003-09-16
Red Hat Enterprise Linux 2.1 RHSA-2003:280 2003-09-16
Last Modified

CVE description copyright © 2017, The MITRE Corporation