Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gp5m-rxrx-pfrj

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.

EPSS

Процентиль: 88%
0.03422
Низкий

7.1 High

CVSS3

Дефекты

CWE-415

Связанные уязвимости

CVSS3: 7.1
ubuntu
больше 5 лет назад

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.

CVSS3: 7.1
redhat
больше 5 лет назад

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.

CVSS3: 7.1
nvd
больше 5 лет назад

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.

CVSS3: 7.1
msrc
больше 5 лет назад

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios such as unconstrained agent-socket access on a legacy operating system or the forwarding of an agent to an attacker-controlled host.

CVSS3: 7.1
debian
больше 5 лет назад

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant ...

EPSS

Процентиль: 88%
0.03422
Низкий

7.1 High

CVSS3

Дефекты

CWE-415