Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3m33-m56x-q24g

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7

Описание

sshd in OpenSSH before 7.4, when privilege separation is not used, creates forwarded Unix-domain sockets as root, which might allow local users to gain privileges via unspecified vectors, related to serverloop.c.

sshd in OpenSSH before 7.4, when privilege separation is not used, creates forwarded Unix-domain sockets as root, which might allow local users to gain privileges via unspecified vectors, related to serverloop.c.

EPSS

Процентиль: 26%
0.00093
Низкий

7 High

CVSS3

Связанные уязвимости

CVSS3: 7
ubuntu
около 9 лет назад

sshd in OpenSSH before 7.4, when privilege separation is not used, creates forwarded Unix-domain sockets as root, which might allow local users to gain privileges via unspecified vectors, related to serverloop.c.

CVSS3: 7.5
redhat
около 9 лет назад

sshd in OpenSSH before 7.4, when privilege separation is not used, creates forwarded Unix-domain sockets as root, which might allow local users to gain privileges via unspecified vectors, related to serverloop.c.

CVSS3: 7
nvd
около 9 лет назад

sshd in OpenSSH before 7.4, when privilege separation is not used, creates forwarded Unix-domain sockets as root, which might allow local users to gain privileges via unspecified vectors, related to serverloop.c.

CVSS3: 7
debian
около 9 лет назад

sshd in OpenSSH before 7.4, when privilege separation is not used, cre ...

fstec
около 9 лет назад

Уязвимость средства криптографической защиты OpenSSH, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 26%
0.00093
Низкий

7 High

CVSS3