Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Openssh | Openbsd | * | 7.2 (including) |
Red Hat Enterprise Linux 6 | RedHat | openssh-0:5.3p1-114.el6_7 | * |
Red Hat Enterprise Linux 7 | RedHat | openssh-0:6.6.1p1-25.el7_2 | * |
Openssh | Ubuntu | precise | * |
Openssh | Ubuntu | trusty | * |
Openssh | Ubuntu | upstream | * |
Openssh | Ubuntu | vivid/stable-phone-overlay | * |
Openssh | Ubuntu | vivid/ubuntu-core | * |
Openssh | Ubuntu | wily | * |