Количество 11
Количество 11
GHSA-2f6c-wrfr-f7rw
The monitor component in sshd in OpenSSH before 7.0 on non-OpenBSD platforms accepts extraneous username data in MONITOR_REQ_PAM_INIT_CTX requests, which allows local users to conduct impersonation attacks by leveraging any SSH login access in conjunction with control of the sshd uid to send a crafted MONITOR_REQ_PWNAM request, related to monitor.c and monitor_wrap.c.
CVE-2015-6563
The monitor component in sshd in OpenSSH before 7.0 on non-OpenBSD platforms accepts extraneous username data in MONITOR_REQ_PAM_INIT_CTX requests, which allows local users to conduct impersonation attacks by leveraging any SSH login access in conjunction with control of the sshd uid to send a crafted MONITOR_REQ_PWNAM request, related to monitor.c and monitor_wrap.c.
CVE-2015-6563
The monitor component in sshd in OpenSSH before 7.0 on non-OpenBSD platforms accepts extraneous username data in MONITOR_REQ_PAM_INIT_CTX requests, which allows local users to conduct impersonation attacks by leveraging any SSH login access in conjunction with control of the sshd uid to send a crafted MONITOR_REQ_PWNAM request, related to monitor.c and monitor_wrap.c.
CVE-2015-6563
The monitor component in sshd in OpenSSH before 7.0 on non-OpenBSD platforms accepts extraneous username data in MONITOR_REQ_PAM_INIT_CTX requests, which allows local users to conduct impersonation attacks by leveraging any SSH login access in conjunction with control of the sshd uid to send a crafted MONITOR_REQ_PWNAM request, related to monitor.c and monitor_wrap.c.
CVE-2015-6563
The monitor component in sshd in OpenSSH before 7.0 on non-OpenBSD pla ...
BDU:2023-07108
Уязвимость средства криптографической защиты OpenSSH, существующая из-за недостаточной проверки входных данных, позволяющая нарушителю выполнить произвольный код или остановить службу sshd
ELSA-2015-2088
ELSA-2015-2088: openssh security, bug fix, and enhancement update (MODERATE)
ELSA-2016-0741
ELSA-2016-0741: openssh security, bug fix, and enhancement update (MODERATE)
SUSE-SU-2015:1695-1
Security update for openssh
SUSE-SU-2015:1581-1
Security update for openssh
SUSE-SU-2015:1544-1
Security update for openssh
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-2f6c-wrfr-f7rw The monitor component in sshd in OpenSSH before 7.0 on non-OpenBSD platforms accepts extraneous username data in MONITOR_REQ_PAM_INIT_CTX requests, which allows local users to conduct impersonation attacks by leveraging any SSH login access in conjunction with control of the sshd uid to send a crafted MONITOR_REQ_PWNAM request, related to monitor.c and monitor_wrap.c. | 0% Низкий | больше 3 лет назад | ||
CVE-2015-6563 The monitor component in sshd in OpenSSH before 7.0 on non-OpenBSD platforms accepts extraneous username data in MONITOR_REQ_PAM_INIT_CTX requests, which allows local users to conduct impersonation attacks by leveraging any SSH login access in conjunction with control of the sshd uid to send a crafted MONITOR_REQ_PWNAM request, related to monitor.c and monitor_wrap.c. | CVSS2: 1.9 | 0% Низкий | около 10 лет назад | |
CVE-2015-6563 The monitor component in sshd in OpenSSH before 7.0 on non-OpenBSD platforms accepts extraneous username data in MONITOR_REQ_PAM_INIT_CTX requests, which allows local users to conduct impersonation attacks by leveraging any SSH login access in conjunction with control of the sshd uid to send a crafted MONITOR_REQ_PWNAM request, related to monitor.c and monitor_wrap.c. | CVSS2: 6.2 | 0% Низкий | больше 10 лет назад | |
CVE-2015-6563 The monitor component in sshd in OpenSSH before 7.0 on non-OpenBSD platforms accepts extraneous username data in MONITOR_REQ_PAM_INIT_CTX requests, which allows local users to conduct impersonation attacks by leveraging any SSH login access in conjunction with control of the sshd uid to send a crafted MONITOR_REQ_PWNAM request, related to monitor.c and monitor_wrap.c. | CVSS2: 1.9 | 0% Низкий | около 10 лет назад | |
CVE-2015-6563 The monitor component in sshd in OpenSSH before 7.0 on non-OpenBSD pla ... | CVSS2: 1.9 | 0% Низкий | около 10 лет назад | |
BDU:2023-07108 Уязвимость средства криптографической защиты OpenSSH, существующая из-за недостаточной проверки входных данных, позволяющая нарушителю выполнить произвольный код или остановить службу sshd | CVSS3: 7.4 | 0% Низкий | около 10 лет назад | |
ELSA-2015-2088 ELSA-2015-2088: openssh security, bug fix, and enhancement update (MODERATE) | почти 10 лет назад | |||
ELSA-2016-0741 ELSA-2016-0741: openssh security, bug fix, and enhancement update (MODERATE) | больше 9 лет назад | |||
SUSE-SU-2015:1695-1 Security update for openssh | около 10 лет назад | |||
SUSE-SU-2015:1581-1 Security update for openssh | около 10 лет назад | |||
SUSE-SU-2015:1544-1 Security update for openssh | около 10 лет назад |
Уязвимостей на страницу