Unrated severityNVD Advisory· Published Jan 18, 2001· Updated Apr 16, 2026
CVE-2001-1469
CVE-2001-1469
Description
The RC4 stream cipher as used by SSH1 allows remote attackers to modify messages without detection by XORing the original message's cyclic redundancy check (CRC) with the CRC of a mask consisting of all the bits of the original message that were modified.
Affected products
8cpe:2.3:a:ssh:ssh:1.2.24:*:*:*:*:*:*:*+ 7 more
- cpe:2.3:a:ssh:ssh:1.2.24:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh:1.2.25:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh:1.2.26:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh:1.2.28:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh:1.2.29:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh:1.2.30:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh:1.2.31:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.kb.cert.org/vuls/id/25309nvdExploitUS Government Resource
- exchange.xforce.ibmcloud.com/vulnerabilities/6449nvd
News mentions
0No linked articles in our index yet.