Lucene search

K
cvelistMitreCVELIST:CVE-2021-28041
HistoryMar 05, 2021 - 7:07 p.m.

CVE-2021-28041

2021-03-0519:07:34
mitre
www.cve.org
10
openssh
ssh-agent
double free
vulnerability
legacy operating system
agent-socket access
attacker-controlled host

AI Score

7.2

Confidence

High

EPSS

0.002

Percentile

55.8%

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.