Chinaunix首页 | 论坛 | 博客
  • 博客访问: 4759
  • 博文数量: 1
  • 博客积分: 0
  • 博客等级: 民兵
  • 技术积分: 20
  • 用 户 组: 普通用户
  • 注册时间: 2015-11-24 08:14
文章分类
文章存档

2016年(1)

我的朋友
最近访客

分类: 系统运维

2016-02-03 11:21:27

名称:

CVE-2016-0778 /CVE-2016-0777
CWE ID: CWE-119 /CWE ID:CWE-200
  

描述

The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote servers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact by requesting many forwardings.

描述

The resend_bytes function in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2 allows remote servers to obtain sensitive information from process memory by requesting transmission of an entire buffer, as demonstrated by reading a private key.


CVE-2016-0777
阅读(1328) | 评论(0) | 转发(0) |
0

上一篇:没有了

下一篇:没有了

给主人留下些什么吧!~~