Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-0778

Опубликовано: 14 янв. 2016
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.6
CVSS3: 8.1

Описание

The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by requesting many forwardings.

РелизСтатусПримечание
devel

not-affected

1:7.1p2-2
esm-infra-legacy/trusty

released

1:6.6p1-2ubuntu2.4
precise

released

1:5.9p1-5ubuntu1.8
trusty

released

1:6.6p1-2ubuntu2.4
trusty/esm

released

1:6.6p1-2ubuntu2.4
upstream

released

7.1p2
vivid

released

1:6.7p1-5ubuntu1.4
vivid/stable-phone-overlay

released

1:6.7p1-5ubuntu1.4
vivid/ubuntu-core

released

1:6.7p1-5ubuntu1.4
wily

released

1:6.9p1-2ubuntu0.1

Показывать по

EPSS

Процентиль: 84%
0.02128
Низкий

4.6 Medium

CVSS2

8.1 High

CVSS3

Связанные уязвимости

redhat
почти 10 лет назад

The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by requesting many forwardings.

CVSS3: 8.1
nvd
почти 10 лет назад

The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by requesting many forwardings.

CVSS3: 8.1
debian
почти 10 лет назад

The (1) roaming_read and (2) roaming_write functions in roaming_common ...

CVSS3: 8.1
github
больше 3 лет назад

The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by requesting many forwardings.

CVSS3: 8.1
fstec
почти 10 лет назад

Уязвимость функций roaming_read и roaming_write средства криптографической защиты OpenSSH, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 84%
0.02128
Низкий

4.6 Medium

CVSS2

8.1 High

CVSS3