Lucene search

K
archlinuxArch LinuxASA-201608-1
HistoryAug 02, 2016 - 12:00 a.m.

openssh: information leakage

2016-08-0200:00:00
Arch Linux
lists.archlinux.org
38

0.107 Low

EPSS

Percentile

95.1%

Mitigate timing differences in password authentication that could be
used to discern valid from invalid account names when long passwords
were sent and particular password hashing algorithms are in use on the
server. Reported by EddieEzra.Harari at verint.com

OSVersionArchitecturePackageVersionFilename
anyanyanyopenssh< 7.3p1-1UNKNOWN