CVE-2016-7407
published 2017-03-03CVE-2016-7407: The dropbearconvert command in Dropbear SSH before 2016.74 allows attackers to execute arbitrary code via a crafted OpenSSH key file.
PriorityP351critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
5.54%
92.3th percentile
The dropbearconvert command in Dropbear SSH before 2016.74 allows attackers to execute arbitrary code via a crafted OpenSSH key file.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | dropbear | < dropbear 2016.74-1 (bookworm) | dropbear 2016.74-1 (bookworm) |
| dropbear_ssh_project | dropbear_ssh | <= 2016.73 | — |
| dropbear_ssh_project | dropbear_ssh | >= 0 < 2016.74-1 | 2016.74-1 |
| dropbear_ssh_project | dropbear_ssh | >= 0 < 2016.74-1 | 2016.74-1 |
| dropbear_ssh_project | dropbear_ssh | >= 0 < 2016.74-1 | 2016.74-1 |
| dropbear_ssh_project | dropbear_ssh | >= 0 < 2016.74-1 | 2016.74-1 |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv9.8CRITICAL
vendor_debian9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-44f9-2mmc-8wmx: The dropbearconvert command in Dropbear SSH before 2016
ghsa_unreviewed·2022-05-17
CVE-2016-7407 [CRITICAL] CWE-20 GHSA-44f9-2mmc-8wmx: The dropbearconvert command in Dropbear SSH before 2016
The dropbearconvert command in Dropbear SSH before 2016.74 allows attackers to execute arbitrary code via a crafted OpenSSH key file.
OSV
CVE-2016-7407: The dropbearconvert command in Dropbear SSH before 2016
osv·2017-03-03·CVSS 9.8
CVE-2016-7407 [CRITICAL] CVE-2016-7407: The dropbearconvert command in Dropbear SSH before 2016
The dropbearconvert command in Dropbear SSH before 2016.74 allows attackers to execute arbitrary code via a crafted OpenSSH key file.
Debian
CVE-2016-7407: dropbear - The dropbearconvert command in Dropbear SSH before 2016.74 allows attackers to e...
vendor_debian·2016·CVSS 9.8
CVE-2016-7407 [CRITICAL] CVE-2016-7407: dropbear - The dropbearconvert command in Dropbear SSH before 2016.74 allows attackers to e...
The dropbearconvert command in Dropbear SSH before 2016.74 allows attackers to execute arbitrary code via a crafted OpenSSH key file.
Scope: local
bookworm: resolved (fixed in 2016.74-1)
bullseye: resolved (fixed in 2016.74-1)
forky: resolved (fixed in 2016.74-1)
sid: resolved (fixed in 2016.74-1)
trixie: resolved (fixed in 2016.74-1)
No detection rules found.
No public exploits indexed.
Hackernews
Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine
blogs_hackernews·2026-07-20
CVE-2016-7407 Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine
Home
Threat Intelligence
Vulnerabilities
Cyber Attacks
Webinars
Expert Insights
Awards
Webinars
Awards
Free eBooks
About THN
Jobs
Advertise with us
## Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine
At least one Russian intelligence service is systematically hijacking internet-connected security cameras across Europe and Ukraine, using the feeds to watch military transport routes, weapons shipments bound for Kyiv , and the locations of Ukrainian troops.
That is the finding of a cybersecurity advisory published July 10 by the AIVD and MIVD, the Netherlands' civilian and military intelligence services, which describe the operation as ongoing.
In Ukraine, the surveillance has not stayed passive. Camera access there has been "
Bugzilla
CVE-2016-7406 CVE-2016-7407 CVE-2016-7408 CVE-2016-7409 dropbear: Multiple issues fixed in dropbear 2016.74
bugzilla·2016-09-15·CVSS 9.8
CVE-2016-7406 [CRITICAL] CVE-2016-7406 CVE-2016-7407 CVE-2016-7408 CVE-2016-7409 dropbear: Multiple issues fixed in dropbear 2016.74
CVE-2016-7406 CVE-2016-7407 CVE-2016-7408 CVE-2016-7409 dropbear: Multiple issues fixed in dropbear 2016.74
A new version of dropbear was released fixing multiple vulnerabilities.
References:
http://seclists.org/oss-sec/2016/q3/504
http://www.openwall.com/lists/oss-security/2016/09/15/2http://www.securityfocus.com/bid/92972https://bugzilla.redhat.com/show_bug.cgi?id=1376353https://secure.ucc.asn.au/hg/dropbear/rev/34e6127ef02ehttps://security.gentoo.org/glsa/201702-23http://www.openwall.com/lists/oss-security/2016/09/15/2http://www.securityfocus.com/bid/92972https://bugzilla.redhat.com/show_bug.cgi?id=1376353https://secure.ucc.asn.au/hg/dropbear/rev/34e6127ef02ehttps://security.gentoo.org/glsa/201702-23
2017-03-03
Published