Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-0778

Опубликовано: 14 янв. 2016
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.6
CVSS3: 8.1

Описание

The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by requesting many forwardings.

РелизСтатусПримечание
devel

not-affected

1:7.1p2-2
esm-infra-legacy/trusty

not-affected

1:6.6p1-2ubuntu2.4
precise

released

1:5.9p1-5ubuntu1.8
trusty

released

1:6.6p1-2ubuntu2.4
trusty/esm

not-affected

1:6.6p1-2ubuntu2.4
upstream

released

7.1p2
vivid

released

1:6.7p1-5ubuntu1.4
vivid/stable-phone-overlay

released

1:6.7p1-5ubuntu1.4
vivid/ubuntu-core

released

1:6.7p1-5ubuntu1.4
wily

released

1:6.9p1-2ubuntu0.1

Показывать по

EPSS

Процентиль: 85%
0.02711
Низкий

4.6 Medium

CVSS2

8.1 High

CVSS3

Связанные уязвимости

redhat
больше 9 лет назад

The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by requesting many forwardings.

CVSS3: 8.1
nvd
больше 9 лет назад

The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by requesting many forwardings.

CVSS3: 8.1
debian
больше 9 лет назад

The (1) roaming_read and (2) roaming_write functions in roaming_common ...

CVSS3: 8.1
github
больше 3 лет назад

The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by requesting many forwardings.

CVSS3: 8.1
fstec
больше 9 лет назад

Уязвимость функций roaming_read и roaming_write средства криптографической защиты OpenSSH, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 85%
0.02711
Низкий

4.6 Medium

CVSS2

8.1 High

CVSS3