Skip to content
Auto-CTI
Back to today
NEW MEDIUM A3

[UPDATE] OpenSSH: Multiple Vulnerabilities

A BSI Warn- und Informationsdienst (WID): Schwachstellen-Informationen (Security Advisories) ·

Admiralty grading (A–F · 1–6)

Source reliability

  • A Completely reliable
  • B Usually reliable
  • C Fairly reliable
  • D Not usually reliable
  • E Unreliable
  • F Cannot be judged

Information credibility

  • 1 Confirmed
  • 2 Probably true
  • 3 Possibly true
  • 4 Doubtful
  • 5 Improbable
  • 6 Cannot be judged

NATO Admiralty (AJP-2.1) grades confidence, independent of the risk score. Cross-source corroboration isn't tracked for non-CVE news, so single-source items are capped at a lower credibility number; a low number does not imply low quality.

Key insight

OpenSSH is widely used on the deployed Ubuntu systems, so the vulnerabilities are directly relevant.

Description

OpenSSH is a widely used implementation of the SSH protocol. Multiple vulnerabilities allow attackers to bypass security restrictions, cause denial of service, and potentially execute code. All systems running vulnerable versions of OpenSSH are affected. Exploitation is possible once an attacker has access to the service. Further details on the individual vulnerabilities and affected versions can be found in the BSI advisory.

Risk score

0
cvss base
0.00
kev bonus
0.00
epss bonus
0.00
poc bonus
0.00
raw before weight
0.00
industry weight
1.10
freshness factor
1.00
exploitability factor
1.00
days old
0.00
vendor mismatch penalty
0.00

Path: operational

ESC