← Back to CVE List
Vulnerability Intelligence Report

CVE-2016-0777

The resend_bytes function in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2 allows remote servers to obtain sensitive information from process memory by requesting transmission of an entire buffer, as demonstrated by reading a private key.

No Active Exploit Signals
CVSS Base Score
6.5
MEDIUM
Exploitability:2.9
Impact Score:3.6
EPSS Probability:63.47%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Weaknesses (CWE)

CWE-200 ↗CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

Affected Products & Versions

Vendor Product Affected Versions
sophos unified_threat_management_software 9.318, 9.353
sophos unified_threat_management 110, 120, 220, 320, 425, 525, 625
oracle linux 7
oracle solaris 11.3
openbsd openssh 5.0, 5.1, 5.2, 5.3, 5.4, 5.5, 5.6, 5.7, 5.8, 5.9, 6.0, 6.1, 6.2, 6.3, 6.4, 6.5, 6.6, 6.7, 6.8, 6.9, 7.0, 7.1
hp remote_device_access_virtual_customer_access_system all
apple mac_os_x all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
63.468%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityRed Hat, Inc. · Vendor · USA
Reserved2015-12-16T00:00:00
Published2016-01-14T00:00:00
Patch Date2016-01-14
Last Updated2026-05-29T20:30:01

LINK COPIED TO CLIPBOARD