VYPR
Medium severity5.3NVD Advisory· Published Oct 26, 2017· Updated Jun 17, 2026

CVE-2017-15906

CVE-2017-15906

Description

The process_open function in sftp-server.c in OpenSSH before 7.6 does not properly prevent write operations in readonly mode, which allows attackers to create zero-length files.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

59

Patches

Vulnerability mechanics

References

9

News mentions

0

No linked articles in our index yet.