CVE-2023-25136 log
Source |
|
Severity | Unknown |
Remote | Yes |
Type | Unknown |
Description | pre-authentication double-free in unpriviledged sandboxed client process when the connecting clients banner causes the SSH_OLD_DHGEX to be set on the server |
Group | Package | Affected | Fixed | Severity | Status | Ticket |
---|---|---|---|---|---|---|
AVG-2832 | openssh | 9.1p1-3 | 9.2p1-1 | Unknown | Fixed |
Notes |
---|
introduced in 9.1, actual exploitability still being investigated |