Known vulnerabilities in openssh (Debian package) 1:6.0p1-4+deb7u3

Vendor: Debian
Version: 1:6.0p1-4+deb7u3
Software CPE: cpe:2.3:o:debian:openssh_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 7
Public exploits: 2
Known exploited (KEV): 0
Highest CVSSv4 Score: 9

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting openssh (Debian package) version 1:6.0p1-4+deb7u3 openssh (Debian package) 1:6.0p1-4+deb7u3 is affected by 7 vulnerabilities: 3 medium, 4 low Critical High Medium Low

Vulnerabilities (7)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU14163 - NULL Pointer Dereference
CVE-2016-10708
CWE-476 Low
No
No
1:6.0p1-4+deb7u7, 1:6.7p1-5+deb8u6, 1:7.4p1-1 31.07.2018 SB2017032008
SB2018072801
SB2018012101
and 7 more
#VU1033 - Missing release of memory after effective lifetime
CVE-2016-8858
CWE-401 Medium
No
No
- 21.10.2016 SB2016102101
SB2016102102
SB2016102103
#VU255 - Exposure of sensitive information to an unauthorized actor
CVE-2016-6210
CWE-200 Medium
Public exploit available
No
1:6.7p1-5+deb8u3, 1:7.2p2-6 02.08.2016 SB2016080201
SB2016080202
SB2016080203
and 16 more
#VU254 - Exposure of sensitive information to an unauthorized actor
CWE-200 Low
No
No
- 02.08.2016 SB2016080201
SB2016080202
SB2016080203
#VU253 - Exposure of sensitive information to an unauthorized actor
CWE-200 Low
No
No
- 02.08.2016 SB2016080201
SB2016080202
SB2016080203
#VU252 - Resource exhaustion
CVE-2016-6515
CWE-400 Medium
Public exploit available
No
- 02.08.2016 SB2016080201
SB2016080202
SB2016080203
and 11 more
#VU251 - Permissions, Privileges, and Access Controls
CVE-2015-8325
CWE-264 Low
No
No
1:6.0p1-4+deb7u4, 1:6.7p1-5+deb8u2, 1:7.2p2-3 02.08.2016 SB2016080201
SB2016080202
SB2016080203
and 10 more