Unrated severityNVD Advisory· Published Nov 25, 2002· Updated Apr 16, 2026
CVE-2002-1644
CVE-2002-1644
Description
SSH Secure Shell for Servers and SSH Secure Shell for Workstations 2.0.13 through 3.2.1, when running without a PTY, does not call setsid to remove the child process from the process group of the parent process, which allows attackers to gain certain privileges.
Affected products
15cpe:2.3:a:ssh:ssh2:2.0.13:*:*:*:*:*:*:*+ 14 more
- cpe:2.3:a:ssh:ssh2:2.0.13:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:2.1:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:2.2:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:2.3:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:2.4:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:2.5:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:3.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:3.1:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:3.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:3.1.2:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:3.1.3:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:3.1.4:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:3.2:*:*:*:*:*:*:*
- cpe:2.3:a:ssh:ssh2:3.2.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.kb.cert.org/vuls/id/740619nvdPatchUS Government Resource
- www.securityfocus.com/bid/6247nvdPatch
- www.ssh.com/company/newsroom/article/286/nvdPatch
- exchange.xforce.ibmcloud.com/vulnerabilities/10710nvd
News mentions
0No linked articles in our index yet.