Skip to main content

OpenSSH Password Validation Vulnerability

Last Update Date: 26 Jul 2016 10:13 Release Date: 26 Jul 2016 3358 Views

RISK: High Risk

TYPE: Servers - Other Servers

TYPE: Other Servers

A vulnerability has been identified in OpenSSH, which could allow a remote attacker to disclose sensitive information by sending large passwords.

 


Impact

  • Information Disclosure

System / Technologies affected

  • Versions prior to 1:6.7p1-5+deb8u3, 1:7.2p2-6

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • The vendor has issued a fix (1:6.7p1-5+deb8u3, 1:7.2p2-6).

Vulnerability Identifier


Source


Related Link