Multiple "buffer management errors" in OpenSSH before 3.7.1 may allow attackers to cause a denial of service or execute arbitrary code using (1) bufferinit in buffer.c, (2) bufferfree in buffer.c, or (3) a separate function in channels.c, a different vulnerability than CVE-2003-0693.