Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-4327

Опубликовано: 03 фев. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 2.1
CVSS3: 5.5

Описание

ssh-keysign.c in ssh-keysign in OpenSSH before 5.8p2 on certain platforms executes ssh-rand-helper with unintended open file descriptors, which allows local users to obtain sensitive key information via the ptrace system call.

РелизСтатусПримечание
devel

not-affected

code not present
hardy

not-affected

code not present
lucid

not-affected

code not present
maverick

not-affected

code not present
natty

not-affected

code not present
oneiric

not-affected

code not present
upstream

not-affected

code not present

Показывать по

EPSS

Процентиль: 35%
0.00416
Низкий

2.1 Low

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

redhat
больше 15 лет назад

ssh-keysign.c in ssh-keysign in OpenSSH before 5.8p2 on certain platforms executes ssh-rand-helper with unintended open file descriptors, which allows local users to obtain sensitive key information via the ptrace system call.

CVSS3: 5.5
nvd
больше 12 лет назад

ssh-keysign.c in ssh-keysign in OpenSSH before 5.8p2 on certain platforms executes ssh-rand-helper with unintended open file descriptors, which allows local users to obtain sensitive key information via the ptrace system call.

CVSS3: 5.5
debian
больше 12 лет назад

ssh-keysign.c in ssh-keysign in OpenSSH before 5.8p2 on certain platfo ...

CVSS3: 5.5
github
больше 4 лет назад

ssh-keysign.c in ssh-keysign in OpenSSH before 5.8p2 on certain platforms executes ssh-rand-helper with unintended open file descriptors, which allows local users to obtain sensitive key information via the ptrace system call.

EPSS

Процентиль: 35%
0.00416
Низкий

2.1 Low

CVSS2

5.5 Medium

CVSS3