CVE-2014-9278
CVE-2014-9278 is a medium-severity vulnerability in Openbsd Openssh with a CVSS 2.0 base score of 4.0. It is not currently listed as actively exploited by CISA, and its EPSS exploit-prediction score is low. The underlying weakness is classified as CWE-287.
Key facts
- Severity: Medium (CVSS 2.0 base score 4.0)
- EPSS exploit prediction: 2% (78th percentile)
- Actively exploited: Not listed in CISA KEV
- Weakness: CWE-287
- Affected product: Openbsd Openssh
- Published:
- Last modified:
Description
The OpenSSH server, as used in Fedora and Red Hat Enterprise Linux 7 and when running in a Kerberos environment, allows remote authenticated users to log in as another user when they are listed in the .k5users file of that user, which might bypass intended authentication requirements that would force a local login.
Frequently asked questions
- What is CVE-2014-9278?
- The OpenSSH server, as used in Fedora and Red Hat Enterprise Linux 7 and when running in a Kerberos environment, allows remote authenticated users to log in as another user when they are listed in the .k5users file of that user, which might bypass intended authentication requirements that would force a local login.
- How severe is CVE-2014-9278?
- CVE-2014-9278 has a CVSS 2.0 base score of 4.0, rated medium severity.
- Is CVE-2014-9278 being actively exploited?
- It is not currently listed in CISA's KEV catalog. Its EPSS exploit-prediction score is 2% (78th percentile), an estimate of the probability of exploitation in the next 30 days.
- What products are affected by CVE-2014-9278?
- CVE-2014-9278 affects Openbsd Openssh. See the affected-products list for the exact vulnerable versions.
- How do I fix CVE-2014-9278?
- Review the linked vendor and NVD advisories for patched versions and mitigations, then upgrade or apply the recommended workaround.
- When was CVE-2014-9278 published?
- CVE-2014-9278 was published on 2014-12-06 and last updated on 2026-06-17.
References
- http://rhn.redhat.com/errata/RHSA-2015-0425.html
- http://thread.gmane.org/gmane.comp.encryption.kerberos.general/15855
- http://www.openwall.com/lists/oss-security/2014/12/02/3
- http://www.openwall.com/lists/oss-security/2014/12/04/17
- http://www.securityfocus.com/bid/71420
- https://bugzilla.mindrot.org/show_bug.cgi?id=1867
- https://bugzilla.redhat.com/show_bug.cgi?id=1169843
- https://exchange.xforce.ibmcloud.com/vulnerabilities/99090
Affected products (1)
- cpe:2.3:a:openbsd:openssh:-:*:*:*:*:*:*:*
More vulnerabilities in Openbsd Openssh
- CVE-2003-0786 — Critical (CVSS 10.0): The SSH1 PAM challenge response authentication in OpenSSH 3.7.1 and 3.7.1p1, when Privilege Separation is disabled,…
- CVE-2003-0693 — Critical (CVSS 10.0): A "buffer management error" in buffer_append_space of buffer.c for OpenSSH before 3.7 may allow remote attackers to…
- CVE-2002-0640 — Critical (CVSS 10.0): Buffer overflow in sshd in OpenSSH 2.3.1 through 3.3 may allow remote attackers to execute arbitrary code via a large…
- CVE-2001-0144 — Critical (CVSS 10.0): CORE SDI SSH1 CRC-32 compensation attack detector allows remote attackers to execute arbitrary commands on an SSH…
- CVE-2000-0999 — Critical (CVSS 10.0): Format string vulnerabilities in OpenBSD ssh program (and possibly other BSD-based operating systems) allow attackers…
- CVE-2000-0525 — Critical (CVSS 10.0): OpenSSH does not properly drop privileges when the UseLogin option is enabled, which allows local users to execute…
All CVEs affecting Openbsd Openssh →
Other CWE-287 (Improper Authentication) vulnerabilities
- CVE-2026-101077 — Critical (CVSS 10.0): A flaw has been found in Netcore NR289-GE 1.4.5102. This impacts the function process_request of the component boa_temp…
- CVE-2026-100886 — Critical (CVSS 10.0): A vulnerability was identified in Seetong T8108, T8108P, T8116 and T8232 4.6.1.4-build202604241011. The affected…
- CVE-2026-77244 — Critical (CVSS 10.0): MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0,…
- CVE-2026-94493 — Critical (CVSS 10.0): A vulnerability was detected in Gigatech PDV5701 1.0.31_240305_112640. This issue affects some unknown processing of…
- CVE-2026-83099 — Critical (CVSS 10.0): Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Forms Services, C/S, Charmode).…
- CVE-2026-83059 — Critical (CVSS 10.0): Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server).…
Browse all CWE-287 (Improper Authentication) vulnerabilities →