CVE-2014-1692
7.3 HIGHThe hash_buffer function in schnorr.c in OpenSSH through 6.4, when Makefile.inc is modified to enable the J-PAKE protocol, does not initi...
Published: 2014-01-29 · Last updated: 2026-05-28
Severity and scoring
- CVSS
- 7.3 HIGH
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
- CWE
- CWE-119
Affected products
| Vendor | Product |
|---|---|
| openbsd | openssh |
Description
The hash_buffer function in schnorr.c in OpenSSH through 6.4, when Makefile.inc is modified to enable the J-PAKE protocol, does not initialize certain data structures, which might allow remote attackers to cause a denial of service (memory corruption) or have unspecified other impact via vectors that trigger an error condition.
Source: NVD
References
- [NVD]https://nvd.nist.gov/vuln/detail/CVE-2014-1692
- [Other]http://marc.info/?l=bugtraq&m=141576985122836&w=2
- [Other]http://marc.info/?l=bugtraq&m=144050155601375&w=2
- [Other]http://openwall.com/lists/oss-security/2014/01/29/10
- [Other]http://openwall.com/lists/oss-security/2014/01/29/2
- [Other]http://osvdb.org/102611
- [Other]http://secunia.com/advisories/60184
- [Other]http://www-01.ibm.com/support/docview.wss?uid=isg3T1020637
- [Other]http://www.openbsd.org/cgi-bin/cvsweb/src/usr.bin/ssh/Attic/schnorr.c.diff?r1=1.9%3Br2=1.10%3Bf=h
- [Vendor advisory]http://www.openbsd.org/cgi-bin/cvsweb/src/usr.bin/ssh/schnorr.c#rev1.10
- [Other]http://www.securityfocus.com/bid/65230
- [Other]https://exchange.xforce.ibmcloud.com/vulnerabilities/90819
- [Other]http://marc.info/?l=bugtraq&m=141576985122836&w=2
- [Other]http://marc.info/?l=bugtraq&m=144050155601375&w=2
- [Other]http://openwall.com/lists/oss-security/2014/01/29/10
- [Other]http://openwall.com/lists/oss-security/2014/01/29/2
- [Other]http://osvdb.org/102611
- [Other]http://secunia.com/advisories/60184
- [Other]http://www-01.ibm.com/support/docview.wss?uid=isg3T1020637
- [Other]http://www.openbsd.org/cgi-bin/cvsweb/src/usr.bin/ssh/Attic/schnorr.c.diff?r1=1.9%3Br2=1.10%3Bf=h
- [Vendor advisory]http://www.openbsd.org/cgi-bin/cvsweb/src/usr.bin/ssh/schnorr.c#rev1.10
- [Other]http://www.securityfocus.com/bid/65230
- [Other]https://exchange.xforce.ibmcloud.com/vulnerabilities/90819
Related CVEs
Same vendor
- CVE-2026-3497 — Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions (7.5 HIGH)
- CVE-2023-51767 — OpenSSH through 10.0, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) because the integer ... (7.0 HIGH)
- CVE-2023-51384 — In ssh-agent in OpenSSH before 9.6, certain destination constraints can be incompletely applied (5.5 MEDIUM)
- CVE-2023-28531 — ssh-add in OpenSSH before 9.3 adds smartcard keys to ssh-agent without the intended per-hop destination constraints (9.8 CRITICAL)
- CVE-2023-25136 — OpenSSH server (sshd) 9.1 introduced a double-free vulnerability during options.kex_algorithms handling (6.5 MEDIUM)
Same CWE
- CVE-2026-12330 — Incorrect boundary conditions in the Internationalization component (5.4 MEDIUM)
- CVE-2026-12329 — Memory safety bug fixed in Thunderbird ESR 140.12 (5.3 MEDIUM)
- CVE-2026-12327 — Memory safety bugs present in Firefox ESR 140.11, Thunderbird ESR 140.11, Firefox 151 and Thunderbird 151 (7.3 HIGH)
- CVE-2026-12326 — Memory safety bugs present in Firefox 151 and Thunderbird 151 (7.3 HIGH)
- CVE-2026-12318 — Incorrect boundary conditions in the Libraries component in NSS (7.3 HIGH)