Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-3116

Опубликовано: 22 мар. 2016
Источник: debian
EPSS Средний

Описание

CRLF injection vulnerability in Dropbear SSH before 2016.72 allows remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dropbearfixed2016.72-1package
dropbearfixed2014.65-1+deb8u1jessiepackage
dropbearno-dsawheezypackage

Примечания

  • https://matt.ucc.asn.au/dropbear/CHANGES

  • Fixed in 2016.72 upstream

EPSS

Процентиль: 96%
0.27583
Средний

Связанные уязвимости

CVSS3: 6.4
ubuntu
почти 10 лет назад

CRLF injection vulnerability in Dropbear SSH before 2016.72 allows remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data.

CVSS3: 6.4
nvd
почти 10 лет назад

CRLF injection vulnerability in Dropbear SSH before 2016.72 allows remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data.

suse-cvrf
почти 10 лет назад

Security update for dropbear

CVSS3: 6.4
github
больше 3 лет назад

CRLF injection vulnerability in Dropbear SSH before 2016.72 allows remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data.

EPSS

Процентиль: 96%
0.27583
Средний