[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Information leak vulnerability in OpenSSH - CVE-2020-14145

Deprecated
ID: oval:org.secpod.oval:def:69255Date: (C)2021-02-19   (M)2023-12-20
Class: VULNERABILITYFamily: unix




A flaw was found in OpenSSH in versions 5.7 through 8.3, where an Observable Discrepancy occurs and leads to an information leak in the algorithm negotiation. This flaw allows a man-in-the-middle attacker to target initial connection attempts, where there is no host key for the server that has been cached by the client.

Platform:
Red Hat Enterprise Linux 7
CentOS 7
Oracle Linux 7
Product:
openssh
Reference:
CVE-2020-14145
CVE    1
CVE-2020-14145

© SecPod Technologies