← Back

CVE-2008-3259

nvd nist
Published: Jul 22, 2008Modified: Apr 23, 2026

JSON object

Loading...
1.2
Vector
AV:L/AC:H/Au:N/C:P/I:N/A:N
Exploitability: 1.9 / Impact: 2.9
Source: NVD

Description

OpenSSH before 5.1 sets the SO_REUSEADDR socket option when the X11UseLocalhost configuration setting is disabled, which allows local users on some platforms to hijack the X11 forwarding port via a bind to a single IP address, as demonstrated on the HP-UX platform.

Affected (71)

Products: Openbsd: Openssh
1 product
Openssh
Configuration A
71 vulnerable
Vulnerable SoftwareAffected Versions
Openbsd
Up to 5.0
Version 1.2.1
Version 1.2.27
Version 1.2.2
Version 1.2.3
Version 1.2
Version 1.3
Version 1.5.7
Version 1.5.8
Version 1.5
Version 2.1.1
Version 2.1
Version 2.2
Version 2.3.1
Version 2.3
Version 2.5.1
Version 2.5.2
Version 2.5
Version 2.9.9
Version 2.9.9p2
Version 2.9
Version 2.9p1
Version 2.9p2
Version 3.0.1
Version 3.0.1p1
Version 3.0.2
Version 3.0.2p1
Version 3.0
Version 3.0p1
Version 3.1
Version 3.1p1
Version 3.2.2
Version 3.2.2p1
Version 3.2.3p1
Version 3.2
Version 3.3
Version 3.3p1
Version 3.4
Version 3.4p1
Version 3.5
Version 3.5p1
Version 3.6.1
Version 3.6.1p1
Version 3.6.1p2
Version 3.6
Version 3.7.1
Version 3.7.1p1
Version 3.7.1p2
Version 3.7
Version 3.8.1
Version 3.8.1p1
Version 3.8
Version 3.9.1
Version 3.9.1p1
Version 3.9
Version 4.0
Version 4.0p1
Version 4.1
Version 4.1p1
Version 4.2
Version 4.2p1
Version 4.3
Version 4.3p1
Version 4.3p2
Version 4.4
Version 4.4p1
Version 4.5
Version 4.6
Version 4.7
Version 4.8
Version 4.9

References (14)

Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.