Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rqfq-63f3-qjmw

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The auth_via_key function in pam_ssh.c in pam_ssh before 1.92, when the allow_blank_passphrase option is disabled, allows remote attackers to bypass authentication restrictions and use private encryption keys requiring a blank passphrase by entering a non-blank passphrase.

The auth_via_key function in pam_ssh.c in pam_ssh before 1.92, when the allow_blank_passphrase option is disabled, allows remote attackers to bypass authentication restrictions and use private encryption keys requiring a blank passphrase by entering a non-blank passphrase.

EPSS

Процентиль: 51%
0.00275
Низкий

Связанные уязвимости

ubuntu
почти 19 лет назад

The auth_via_key function in pam_ssh.c in pam_ssh before 1.92, when the allow_blank_passphrase option is disabled, allows remote attackers to bypass authentication restrictions and use private encryption keys requiring a blank passphrase by entering a non-blank passphrase.

redhat
около 19 лет назад

The auth_via_key function in pam_ssh.c in pam_ssh before 1.92, when the allow_blank_passphrase option is disabled, allows remote attackers to bypass authentication restrictions and use private encryption keys requiring a blank passphrase by entering a non-blank passphrase.

nvd
почти 19 лет назад

The auth_via_key function in pam_ssh.c in pam_ssh before 1.92, when the allow_blank_passphrase option is disabled, allows remote attackers to bypass authentication restrictions and use private encryption keys requiring a blank passphrase by entering a non-blank passphrase.

debian
почти 19 лет назад

The auth_via_key function in pam_ssh.c in pam_ssh before 1.92, when th ...

EPSS

Процентиль: 51%
0.00275
Низкий