Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w62j-g234-3f6f

Опубликовано: 03 фев. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

OpenSSH server (sshd) 9.1 introduced a double-free vulnerability during options.kex_algorithms handling. This is fixed in OpenSSH 9.2. The double free can be triggered by an unauthenticated attacker in the default configuration; however, the vulnerability discoverer reports that "exploiting this vulnerability will not be easy."

OpenSSH server (sshd) 9.1 introduced a double-free vulnerability during options.kex_algorithms handling. This is fixed in OpenSSH 9.2. The double free can be triggered by an unauthenticated attacker in the default configuration; however, the vulnerability discoverer reports that "exploiting this vulnerability will not be easy."

EPSS

Процентиль: 100%
0.90014
Критический

9.8 Critical

CVSS3

Дефекты

CWE-415

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 2 лет назад

OpenSSH server (sshd) 9.1 introduced a double-free vulnerability during options.kex_algorithms handling. This is fixed in OpenSSH 9.2. The double free can be leveraged, by an unauthenticated remote attacker in the default configuration, to jump to any location in the sshd address space. One third-party report states "remote code execution is theoretically possible."

CVSS3: 6.5
redhat
больше 2 лет назад

OpenSSH server (sshd) 9.1 introduced a double-free vulnerability during options.kex_algorithms handling. This is fixed in OpenSSH 9.2. The double free can be leveraged, by an unauthenticated remote attacker in the default configuration, to jump to any location in the sshd address space. One third-party report states "remote code execution is theoretically possible."

CVSS3: 6.5
nvd
больше 2 лет назад

OpenSSH server (sshd) 9.1 introduced a double-free vulnerability during options.kex_algorithms handling. This is fixed in OpenSSH 9.2. The double free can be leveraged, by an unauthenticated remote attacker in the default configuration, to jump to any location in the sshd address space. One third-party report states "remote code execution is theoretically possible."

CVSS3: 6.5
debian
больше 2 лет назад

OpenSSH server (sshd) 9.1 introduced a double-free vulnerability durin ...

oracle-oval
больше 2 лет назад

ELSA-2023-2645: openssh security update (MODERATE)

EPSS

Процентиль: 100%
0.90014
Критический

9.8 Critical

CVSS3

Дефекты

CWE-415