ALAS-2015-568 --- openssh, pam_ssh_agent_authID: oval:org.secpod.oval:def:1200149 | Date: (C)2015-12-30 (M)2023-12-07 |
Class: PATCH | Family: unix |
It was reported that when forwarding X11 connections with ForwardX11Trusted=no, connections made after ForwardX11Timeout expired could be permitted and no longer subject to XSECURITY restrictions because of an ineffective timeout check in ssh coupled with "fail open" behavior in the X11 server when clients attempted connections with expired credentials.
Platform: |
Amazon Linux AMI |
Product: |
openssh |
pam_ssh_agent_auth |