CVE-2023-25136 log
| Source | 
							
  | 
					
| Severity | Unknown | 
| Remote | Yes | 
| Type | Unknown | 
| Description | pre-authentication double-free in unpriviledged sandboxed client process when the connecting clients banner causes the SSH_OLD_DHGEX to be set on the server  | 
					
| Group | Package | Affected | Fixed | Severity | Status | Ticket | 
|---|---|---|---|---|---|---|
| AVG-2832 | openssh | 9.1p1-3 | 9.2p1-1 | Unknown | Fixed | 
| Notes | 
|---|
introduced in 9.1, actual exploitability still being investigated  |