CVE-1999-1029: SSH server (sshd2) before 2.0.12 does not properly record login attempts if the connection is closed before the maximum

Published n/a Updated 2026-08-21T04:30:46.468Z

Summary

SSH server (sshd2) before 2.0.12 does not properly record login attempts if the connection is closed before the maximum number of tries, allowing a remote attacker to guess the password without showing up in the audit logs.

Severity

UNKNOWN

Source Attribution

Source: NVD · Updated: 2026-08-21T04:30:46.468Z · Confidence: high

Impact

Based on CVSS vector: n/a — assess confidentiality, integrity, and availability impact via the official vector documentation.

Affected Software

Fix

Upgrade affected software to the fixed version identified above. Apply vendor patches and monitor advisories before exposed systems go unpatched.

References