CVE-2023-25136 log
| Source |
|
| Severity | Unknown |
| Remote | Yes |
| Type | Unknown |
| Description | pre-authentication double-free in unpriviledged sandboxed client process when the connecting clients banner causes the SSH_OLD_DHGEX to be set on the server |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-2832 | openssh | 9.1p1-3 | 9.2p1-1 | Unknown | Fixed |
| Notes |
|---|
introduced in 9.1, actual exploitability still being investigated |