CVE-2003-0693 is a critical buffer management error in OpenSSH versions prior to 3.7, specifically within the buffer_append_space function in buffer.c. This flaw allows remote, unauthenticated attackers to execute arbitrary code by corrupting the heap through an incorrect memory deallocation. With a CVSS score of 10.0, it represents a severe risk with complete compromise of confidentiality, integrity, and availability. While no public exploit code or active exploitation is reported, its high FAUCET Risk Score and notable community discussion indicate significant concern.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 3.7CPE matchmatch criteria | cpe:2.3:a:openbsd:openssh:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.