Количество 21
Количество 21
ELSA-2016-0465
ELSA-2016-0465: openssh security update (MODERATE)

openSUSE-SU-2016:1455-1
Security update for openssh

SUSE-SU-2016:1528-1
Security update for openssh

SUSE-SU-2016:1386-1
Security update for openssh

SUSE-SU-2016:2555-1
Security update for openssh-openssl1

SUSE-SU-2016:2388-1
Security update for openssh

CVE-2016-1908
The client in OpenSSH before 7.2 mishandles failed cookie generation for untrusted X11 forwarding and relies on the local X11 server for access-control decisions, which allows remote X11 clients to trigger a fallback and obtain trusted X11 forwarding privileges by leveraging configuration issues on this X11 server, as demonstrated by lack of the SECURITY extension on this X11 server.

CVE-2016-1908
The client in OpenSSH before 7.2 mishandles failed cookie generation for untrusted X11 forwarding and relies on the local X11 server for access-control decisions, which allows remote X11 clients to trigger a fallback and obtain trusted X11 forwarding privileges by leveraging configuration issues on this X11 server, as demonstrated by lack of the SECURITY extension on this X11 server.

CVE-2016-1908
The client in OpenSSH before 7.2 mishandles failed cookie generation for untrusted X11 forwarding and relies on the local X11 server for access-control decisions, which allows remote X11 clients to trigger a fallback and obtain trusted X11 forwarding privileges by leveraging configuration issues on this X11 server, as demonstrated by lack of the SECURITY extension on this X11 server.
CVE-2016-1908
The client in OpenSSH before 7.2 mishandles failed cookie generation f ...

CVE-2016-3115
Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions.

CVE-2016-3115
Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions.

CVE-2016-3115
Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions.
CVE-2016-3115
Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSS ...
GHSA-mgwc-m57j-46w8
The client in OpenSSH before 7.2 mishandles failed cookie generation for untrusted X11 forwarding and relies on the local X11 server for access-control decisions, which allows remote X11 clients to trigger a fallback and obtain trusted X11 forwarding privileges by leveraging configuration issues on this X11 server, as demonstrated by lack of the SECURITY extension on this X11 server.

BDU:2017-01263
Уязвимость клиента средства криптографической защиты OpenSSH, позволяющая нарушителю получить доверенные права при взаимодействии с X11-сервером
GHSA-p759-vw7c-cvg8
Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions.

BDU:2016-00819
Уязвимости средства криптографической защиты OpenSSH, позволяющие нарушителю обойти ограничения интерпретатора команд
ELSA-2016-3531
ELSA-2016-3531: openssh security update (IMPORTANT)
ELSA-2016-0466
ELSA-2016-0466: openssh security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
ELSA-2016-0465 ELSA-2016-0465: openssh security update (MODERATE) | больше 9 лет назад | |||
![]() | openSUSE-SU-2016:1455-1 Security update for openssh | больше 9 лет назад | ||
![]() | SUSE-SU-2016:1528-1 Security update for openssh | около 9 лет назад | ||
![]() | SUSE-SU-2016:1386-1 Security update for openssh | больше 9 лет назад | ||
![]() | SUSE-SU-2016:2555-1 Security update for openssh-openssl1 | почти 9 лет назад | ||
![]() | SUSE-SU-2016:2388-1 Security update for openssh | почти 9 лет назад | ||
![]() | CVE-2016-1908 The client in OpenSSH before 7.2 mishandles failed cookie generation for untrusted X11 forwarding and relies on the local X11 server for access-control decisions, which allows remote X11 clients to trigger a fallback and obtain trusted X11 forwarding privileges by leveraging configuration issues on this X11 server, as demonstrated by lack of the SECURITY extension on this X11 server. | CVSS3: 9.8 | 4% Низкий | больше 8 лет назад |
![]() | CVE-2016-1908 The client in OpenSSH before 7.2 mishandles failed cookie generation for untrusted X11 forwarding and relies on the local X11 server for access-control decisions, which allows remote X11 clients to trigger a fallback and obtain trusted X11 forwarding privileges by leveraging configuration issues on this X11 server, as demonstrated by lack of the SECURITY extension on this X11 server. | CVSS2: 4.9 | 4% Низкий | больше 9 лет назад |
![]() | CVE-2016-1908 The client in OpenSSH before 7.2 mishandles failed cookie generation for untrusted X11 forwarding and relies on the local X11 server for access-control decisions, which allows remote X11 clients to trigger a fallback and obtain trusted X11 forwarding privileges by leveraging configuration issues on this X11 server, as demonstrated by lack of the SECURITY extension on this X11 server. | CVSS3: 9.8 | 4% Низкий | больше 8 лет назад |
CVE-2016-1908 The client in OpenSSH before 7.2 mishandles failed cookie generation f ... | CVSS3: 9.8 | 4% Низкий | больше 8 лет назад | |
![]() | CVE-2016-3115 Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions. | CVSS3: 6.4 | 59% Средний | больше 9 лет назад |
![]() | CVE-2016-3115 Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions. | CVSS2: 4.9 | 59% Средний | больше 9 лет назад |
![]() | CVE-2016-3115 Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions. | CVSS3: 6.4 | 59% Средний | больше 9 лет назад |
CVE-2016-3115 Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSS ... | CVSS3: 6.4 | 59% Средний | больше 9 лет назад | |
GHSA-mgwc-m57j-46w8 The client in OpenSSH before 7.2 mishandles failed cookie generation for untrusted X11 forwarding and relies on the local X11 server for access-control decisions, which allows remote X11 clients to trigger a fallback and obtain trusted X11 forwarding privileges by leveraging configuration issues on this X11 server, as demonstrated by lack of the SECURITY extension on this X11 server. | CVSS3: 9.8 | 4% Низкий | больше 3 лет назад | |
![]() | BDU:2017-01263 Уязвимость клиента средства криптографической защиты OpenSSH, позволяющая нарушителю получить доверенные права при взаимодействии с X11-сервером | CVSS2: 7.5 | 4% Низкий | больше 8 лет назад |
GHSA-p759-vw7c-cvg8 Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions. | CVSS3: 6.4 | 59% Средний | больше 3 лет назад | |
![]() | BDU:2016-00819 Уязвимости средства криптографической защиты OpenSSH, позволяющие нарушителю обойти ограничения интерпретатора команд | CVSS2: 5.5 | 59% Средний | больше 9 лет назад |
ELSA-2016-3531 ELSA-2016-3531: openssh security update (IMPORTANT) | больше 9 лет назад | |||
ELSA-2016-0466 ELSA-2016-0466: openssh security update (MODERATE) | больше 9 лет назад |
Уязвимостей на страницу