Advisories ยป MGASA-2016-0108

Updated openssh packages fix security vulnerability

Publication date: 10 Mar 2016
Modification date: 10 Mar 2016
Type: security
Affected Mageia releases : 5
CVE: CVE-2016-3115

Description

Missing sanitisation of untrusted input allows an authenticated user who
is able to request X11 forwarding to inject commands to xauth(1)
(CVE-2016-3115).
                

References

SRPMS

5/core