Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-25136
HistoryFeb 03, 2023 - 6:15 a.m.

Double free

2023-02-0306:15:00
PRIOn knowledge base
www.prio-n.com
32
openssh
server
vulnerability
fixed
double-free
remote attacker
remote code execution

6.8 Medium

AI Score

Confidence

High

0.009 Low

EPSS

Percentile

82.6%

OpenSSH server (sshd) 9.1 introduced a double-free vulnerability during options.kex_algorithms handling. This is fixed in OpenSSH 9.2. The double free can be leveraged, by an unauthenticated remote attacker in the default configuration, to jump to any location in the sshd address space. One third-party report states “remote code execution is theoretically possible.”

CPENameOperatorVersion
fedoraeq37
fedoraeq38
openssheq9.1

References