OVMSA-2016-0070

OVMSA-2016-0070 - openssh security update

Type:SECURITY
Impact:NA
Release Date:2016-06-20

Description


[4.3p2-82.0.2]
- CVE-2015-5600: MaxAuthTries limit bypass via duplicates in KbdInteractiveDevices (John Haxby) [orabug 22985024]
- CVE-2016-3115: missing sanitisation of input for X11 forwarding (John Haxby) [orabug 22985024]


Related CVEs


CVE-2016-3115
CVE-2015-5600

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle VM 3.2 (x86_64) openssh-4.3p2-82.0.2.el5.src.rpm68dbb75bd4dbce8bb3c0994aef27953e1023d0dea36132db69a1a1b621f0ab88OVMSA-2023-0019ovm3_3.2.1_x86_64_patch
openssh-4.3p2-82.0.2.el5.x86_64.rpm5e8cc2bf65a2f9c2f3a50531a7f238f7e3906fc81644a1f4ebad3a1b57d340c1OVMSA-2023-0019ovm3_3.2.1_x86_64_patch
openssh-clients-4.3p2-82.0.2.el5.x86_64.rpm13bfbaa084a97e7e31c0515a6367e687dd6fc391768a025d22556ec7d3720de1OVMSA-2023-0019ovm3_3.2.1_x86_64_patch
openssh-server-4.3p2-82.0.2.el5.x86_64.rpm4e78b9fe5903efb0393acdc5a31143823818a156b016bbea008afe4a7310fc14OVMSA-2023-0019ovm3_3.2.1_x86_64_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete