CVE-2016-10009

Untrusted search path vulnerability in ssh-agent.c in ssh-agent in OpenSSH before 7.4 allows remote attackers to execute arbitrary local PKCS#11 modules by leveraging control over a forwarded agent-socket.
Configurations

Configuration 1 (hide)

cpe:2.3:a:openbsd:openssh:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-01-05 02:59

Updated : 2023-07-20 18:15


NVD link : CVE-2016-10009

Mitre link : CVE-2016-10009

CVE.ORG link : CVE-2016-10009


JSON object : View

Products Affected

openbsd

  • openssh
CWE
CWE-426

Untrusted Search Path