Description
Unspecified vulnerability in portable OpenSSH before 4.4, when running on some platforms, allows remote attackers to determine the validity of usernames via unknown vectors involving a GSSAPI "authentication abort."
CVSS vector
AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9Complexity: Low
Integrity: None
Availability: None
Affected Packages2 packages
🔴Vulnerability Details
3GHSAGHSA-mhjc-ghvw-2hvv: Unspecified vulnerability in portable OpenSSH before 4↗2022-05-01 ▶ OSVCVE-2006-5052: Unspecified vulnerability in portable OpenSSH before 4↗2006-09-27 ▶ CVEListCVE-2006-5052: Unspecified vulnerability in portable OpenSSH before 4↗2006-09-27 ▶ 📋Vendor Advisories
2Red HatKerberos information leak↗2006-09-28 ▶ DebianCVE-2006-5052: openssh - Unspecified vulnerability in portable OpenSSH before 4.4, when running on some p...↗2006 ▶ 💬Community
4BugzillaCVE-2006-5052 GSSAPI information leak↗2007-03-30 ▶ BugzillaCVE-2006-5052 Kerberos information leak↗2007-03-30 ▶ BugzillaCVE-2006-5052 GSSAPI information leak↗2007-03-30 ▶ BugzillaCVE-2006-5052 GSSAPI information leak↗2006-09-27 ▶