CVE-2016-0777
OpenSSH: Client Information leak due to use of roaming connection feature
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The resend_bytes function in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2 allows remote servers to obtain sensitive information from process memory by requesting transmission of an entire buffer, as demonstrated by reading a private key.
La función resend_bytes en roaming_common.c en el cliente en OpenSSH 5.x, 6.x y 7.x en versiones anteriores a 7.1p2 permite a servidores remotos obtener información sensible desde la memoria de proceso mediante la petición de transmisión de un buffer completo, según lo demostrado mediante la lectura de una clave privada.
An information leak flaw was found in the way the OpenSSH client roaming feature was implemented. A malicious server could potentially use this flaw to leak portions of memory (possibly including private SSH keys) of a successfully authenticated OpenSSH client.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-12-16 CVE Reserved
- 2016-01-14 CVE Published
- 2024-08-05 CVE Updated
- 2024-11-03 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
- CWE-682: Incorrect Calculation
CAPEC
References (37)
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.318 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.318" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 110 Search vendor "Sophos" for product "Unified Threat Management" and version "110" | - |
Safe
|
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.318 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.318" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 120 Search vendor "Sophos" for product "Unified Threat Management" and version "120" | - |
Safe
|
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.318 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.318" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 220 Search vendor "Sophos" for product "Unified Threat Management" and version "220" | - |
Safe
|
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.318 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.318" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 320 Search vendor "Sophos" for product "Unified Threat Management" and version "320" | - |
Safe
|
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.318 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.318" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 425 Search vendor "Sophos" for product "Unified Threat Management" and version "425" | - |
Safe
|
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.318 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.318" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 525 Search vendor "Sophos" for product "Unified Threat Management" and version "525" | - |
Safe
|
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.318 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.318" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 625 Search vendor "Sophos" for product "Unified Threat Management" and version "625" | - |
Safe
|
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.353 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.353" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 110 Search vendor "Sophos" for product "Unified Threat Management" and version "110" | - |
Safe
|
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.353 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.353" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 120 Search vendor "Sophos" for product "Unified Threat Management" and version "120" | - |
Safe
|
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.353 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.353" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 220 Search vendor "Sophos" for product "Unified Threat Management" and version "220" | - |
Safe
|
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.353 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.353" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 320 Search vendor "Sophos" for product "Unified Threat Management" and version "320" | - |
Safe
|
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.353 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.353" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 425 Search vendor "Sophos" for product "Unified Threat Management" and version "425" | - |
Safe
|
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.353 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.353" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 525 Search vendor "Sophos" for product "Unified Threat Management" and version "525" | - |
Safe
|
Sophos Search vendor "Sophos" | Unified Threat Management Software Search vendor "Sophos" for product "Unified Threat Management Software" | 9.353 Search vendor "Sophos" for product "Unified Threat Management Software" and version "9.353" | - |
Affected
| in | Sophos Search vendor "Sophos" | Unified Threat Management Search vendor "Sophos" for product "Unified Threat Management" | 625 Search vendor "Sophos" for product "Unified Threat Management" and version "625" | - |
Safe
|
Oracle Search vendor "Oracle" | Linux Search vendor "Oracle" for product "Linux" | 7 Search vendor "Oracle" for product "Linux" and version "7" | - |
Affected
| ||||||
Oracle Search vendor "Oracle" | Solaris Search vendor "Oracle" for product "Solaris" | 11.3 Search vendor "Oracle" for product "Solaris" and version "11.3" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.0 Search vendor "Openbsd" for product "Openssh" and version "5.0" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.0 Search vendor "Openbsd" for product "Openssh" and version "5.0" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.1 Search vendor "Openbsd" for product "Openssh" and version "5.1" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.1 Search vendor "Openbsd" for product "Openssh" and version "5.1" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.2 Search vendor "Openbsd" for product "Openssh" and version "5.2" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.2 Search vendor "Openbsd" for product "Openssh" and version "5.2" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.3 Search vendor "Openbsd" for product "Openssh" and version "5.3" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.3 Search vendor "Openbsd" for product "Openssh" and version "5.3" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.4 Search vendor "Openbsd" for product "Openssh" and version "5.4" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.4 Search vendor "Openbsd" for product "Openssh" and version "5.4" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.5 Search vendor "Openbsd" for product "Openssh" and version "5.5" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.5 Search vendor "Openbsd" for product "Openssh" and version "5.5" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.6 Search vendor "Openbsd" for product "Openssh" and version "5.6" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.6 Search vendor "Openbsd" for product "Openssh" and version "5.6" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.7 Search vendor "Openbsd" for product "Openssh" and version "5.7" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.7 Search vendor "Openbsd" for product "Openssh" and version "5.7" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.8 Search vendor "Openbsd" for product "Openssh" and version "5.8" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.8 Search vendor "Openbsd" for product "Openssh" and version "5.8" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.9 Search vendor "Openbsd" for product "Openssh" and version "5.9" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 5.9 Search vendor "Openbsd" for product "Openssh" and version "5.9" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.0 Search vendor "Openbsd" for product "Openssh" and version "6.0" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.0 Search vendor "Openbsd" for product "Openssh" and version "6.0" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.1 Search vendor "Openbsd" for product "Openssh" and version "6.1" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.1 Search vendor "Openbsd" for product "Openssh" and version "6.1" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.2 Search vendor "Openbsd" for product "Openssh" and version "6.2" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.2 Search vendor "Openbsd" for product "Openssh" and version "6.2" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.2 Search vendor "Openbsd" for product "Openssh" and version "6.2" | p2 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.3 Search vendor "Openbsd" for product "Openssh" and version "6.3" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.3 Search vendor "Openbsd" for product "Openssh" and version "6.3" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.4 Search vendor "Openbsd" for product "Openssh" and version "6.4" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.4 Search vendor "Openbsd" for product "Openssh" and version "6.4" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.5 Search vendor "Openbsd" for product "Openssh" and version "6.5" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.5 Search vendor "Openbsd" for product "Openssh" and version "6.5" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.6 Search vendor "Openbsd" for product "Openssh" and version "6.6" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.6 Search vendor "Openbsd" for product "Openssh" and version "6.6" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.7 Search vendor "Openbsd" for product "Openssh" and version "6.7" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.7 Search vendor "Openbsd" for product "Openssh" and version "6.7" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.8 Search vendor "Openbsd" for product "Openssh" and version "6.8" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.8 Search vendor "Openbsd" for product "Openssh" and version "6.8" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.9 Search vendor "Openbsd" for product "Openssh" and version "6.9" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 6.9 Search vendor "Openbsd" for product "Openssh" and version "6.9" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 7.0 Search vendor "Openbsd" for product "Openssh" and version "7.0" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 7.0 Search vendor "Openbsd" for product "Openssh" and version "7.0" | p1 |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 7.1 Search vendor "Openbsd" for product "Openssh" and version "7.1" | - |
Affected
| ||||||
Openbsd Search vendor "Openbsd" | Openssh Search vendor "Openbsd" for product "Openssh" | 7.1 Search vendor "Openbsd" for product "Openssh" and version "7.1" | p1 |
Affected
| ||||||
Hp Search vendor "Hp" | Remote Device Access Virtual Customer Access System Search vendor "Hp" for product "Remote Device Access Virtual Customer Access System" | <= 15.07 Search vendor "Hp" for product "Remote Device Access Virtual Customer Access System" and version " <= 15.07" | - |
Affected
| ||||||
Apple Search vendor "Apple" | Mac Os X Search vendor "Apple" for product "Mac Os X" | <= 10.11.3 Search vendor "Apple" for product "Mac Os X" and version " <= 10.11.3" | - |
Affected
|