Описание
ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.
Релиз | Статус | Примечание |
---|---|---|
bionic | not-affected | code not present |
devel | released | 1:8.4p1-4ubuntu2 |
esm-infra-legacy/trusty | not-affected | code not present |
esm-infra/bionic | not-affected | code not present |
esm-infra/focal | not-affected | 1:8.2p1-4ubuntu0.2 |
esm-infra/xenial | not-affected | code not present |
focal | released | 1:8.2p1-4ubuntu0.2 |
groovy | released | 1:8.3p1-1ubuntu0.1 |
precise/esm | not-affected | code not present |
trusty | ignored | end of standard support |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | not-affected | code not present |
devel | not-affected | code not present |
esm-apps/bionic | not-affected | code not present |
esm-apps/focal | not-affected | code not present |
esm-infra-legacy/trusty | DNE | |
focal | not-affected | code not present |
groovy | not-affected | code not present |
precise/esm | DNE | |
trusty | DNE | |
trusty/esm | DNE |
Показывать по
EPSS
4.6 Medium
CVSS2
7.1 High
CVSS3
Связанные уязвимости
ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.
ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.
ssh-agent in OpenSSH before 8.5 has a double free that may be relevant ...
EPSS
4.6 Medium
CVSS2
7.1 High
CVSS3