Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-0778

Опубликовано: 14 янв. 2016
Источник: ubuntu
Приоритет: medium
CVSS2: 4.6
CVSS3: 8.1

Описание

The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by requesting many forwardings.

РелизСтатусПримечание
devel

not-affected

1:7.1p2-2
esm-infra-legacy/trusty

released

1:6.6p1-2ubuntu2.4
precise

released

1:5.9p1-5ubuntu1.8
trusty

released

1:6.6p1-2ubuntu2.4
trusty/esm

released

1:6.6p1-2ubuntu2.4
upstream

released

7.1p2
vivid

released

1:6.7p1-5ubuntu1.4
vivid/stable-phone-overlay

released

1:6.7p1-5ubuntu1.4
vivid/ubuntu-core

released

1:6.7p1-5ubuntu1.4
wily

released

1:6.9p1-2ubuntu0.1

Показывать по

4.6 Medium

CVSS2

8.1 High

CVSS3

Связанные уязвимости

redhat
больше 10 лет назад

The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by requesting many forwardings.

CVSS3: 8.1
nvd
больше 10 лет назад

The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by requesting many forwardings.

CVSS3: 8.1
debian
больше 10 лет назад

The (1) roaming_read and (2) roaming_write functions in roaming_common ...

CVSS3: 8.1
github
около 4 лет назад

The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by requesting many forwardings.

CVSS3: 8.1
fstec
больше 10 лет назад

Уязвимость функций roaming_read и roaming_write средства криптографической защиты OpenSSH, позволяющая нарушителю вызвать отказ в обслуживании

4.6 Medium

CVSS2

8.1 High

CVSS3