VYPR

rpm package

opensuse/ssh-audit&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/ssh-audit&distro=openSUSE%20Tumbleweed

Vulnerabilities (3)

  • CVE-2023-48795MedDec 18, 2023
    affected < 3.1.0-1.1fixed 3.1.0-1.1

    The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may consequently end

  • CVE-2002-20001Nov 11, 2021
    affected < 3.2.0-1.1fixed 3.2.0-1.1

    The Diffie-Hellman Key Agreement Protocol allows remote attackers (from the client side) to send arbitrary numbers that are actually not public keys, and trigger expensive server-side DHE modular-exponentiation calculations, aka a D(HE)at or D(HE)ater attack. The client needs ver

  • CVE-2018-15473Aug 17, 2018
    affected < 2.5.0-1.2fixed 2.5.0-1.2

    OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticating user until after the packet containing the request has been fully parsed, related to auth2-gss.c, auth2-hostbased.c, and auth2-pubkey.c.