{ "schema_version": "1.4.0", "id": "GHSA-jpvc-jx2p-m7rr", "modified": "2022-05-02T03:58:28Z", "published": "2022-05-02T03:58:28Z", "aliases": [ "CVE-2009-4810" ], "details": "The Secure Remote Password (SRP) implementation in Samhain before 2.5.4 does not check for a certain zero value where required by the protocol, which allows remote attackers to bypass authentication via crafted input.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-4810" }, { "type": "WEB", "url": "http://secunia.com/advisories/34104" }, { "type": "WEB", "url": "http://trac.la-samhna.de/samhain/changeset/225" }, { "type": "WEB", "url": "http://trac.la-samhna.de/samhain/ticket/150" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/34003" } ], "database_specific": { "cwe_ids": [ "CWE-20" ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2010-04-23T14:30:00Z" } }