Back to search
CVE-2015-5352
Published: Aug 3, 2015
Modified: Aug 6, 2024
PUBLISHED
Description
The x11_open_helper function in channels.c in ssh in OpenSSH before 6.9, when ForwardX11Trusted mode is not used, lacks a check of the refusal deadline for X connections, which makes it easier for remote attackers to bypass intended access restrictions via a connection outside of the permitted time window.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
USN-2710-2
vendor-advisory
GLSA-201512-04
vendor-advisory
RHSA-2016:0741
vendor-advisory
75525
vdb-entry
1032797
vdb-entry
SUSE-SU-2015:1581
vendor-advisory
USN-2710-1
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now