sshd in OpenSSH before 7.4, when privilege separation is not used, creates forwarded Unix-domain sockets as root, which might allow local users to gain privileges via unspecified vectors, related to serverloop.c.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Openssh | Openbsd | * | 7.3 (including) |
Openssh | Ubuntu | upstream | * |
Openssh | Ubuntu | vivid/stable-phone-overlay | * |
Openssh | Ubuntu | vivid/ubuntu-core | * |
Openssh | Ubuntu | xenial | * |
Openssh | Ubuntu | yakkety | * |