| Name | CVE-2015-6563 |
| Description | The monitor component in sshd in OpenSSH before 7.0 on non-OpenBSD platforms accepts extraneous username data in MONITOR_REQ_PAM_INIT_CTX requests, which allows local users to conduct impersonation attacks by leveraging any SSH login access in conjunction with control of the sshd uid to send a crafted MONITOR_REQ_PWNAM request, related to monitor.c and monitor_wrap.c. |
| Source | CVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
| References | DLA-1500-1 |
| Debian Bugs | 795711 |
The table below lists information on source packages.
| Source Package | Release | Version | Status |
|---|---|---|---|
| openssh (PTS) | bullseye | 1:8.4p1-5+deb11u3 | fixed |
| bullseye (security) | 1:8.4p1-5+deb11u5 | fixed | |
| bookworm | 1:9.2p1-2+deb12u7 | fixed | |
| bookworm (security) | 1:9.2p1-2+deb12u9 | fixed | |
| trixie | 1:10.0p1-7+deb13u1 | fixed | |
| trixie (security) | 1:10.0p1-7+deb13u2 | fixed | |
| forky | 1:10.2p1-6 | fixed | |
| sid | 1:10.3p1-1 | fixed |
The information below is based on the following data on fixed versions.
| Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
|---|---|---|---|---|---|---|
| openssh | source | jessie | 1:6.7p1-5+deb8u6 | DLA-1500-1 | ||
| openssh | source | (unstable) | 1:6.9p1-1 | 795711 |
[wheezy] - openssh <no-dsa> (Minor issue)
[squeeze] - openssh <no-dsa> (Minor issue)
https://anongit.mindrot.org/openssh.git/commit/?id=d4697fe9a28dab7255c60433e4dd23cf7fce8a8b
https://www.openwall.com/lists/oss-security/2015/08/11/9