Lucene search

K
prionPRIOn knowledge basePRION:CVE-2016-8858
HistoryDec 09, 2016 - 11:59 a.m.

Design/Logic Flaw

2016-12-0911:59:00
PRIOn knowledge base
www.prio-n.com
597

7 High

AI Score

Confidence

High

0.784 High

EPSS

Percentile

98.3%

The kex_input_kexinit function in kex.c in OpenSSH 6.x and 7.x through 7.3 allows remote attackers to cause a denial of service (memory consumption) by sending many duplicate KEXINIT requests. NOTE: a third party reports that “OpenSSH upstream does not consider this as a security issue.”