← Back to browse · API

CVE-2016-0777

Severity
MEDIUM
CVSS
6.5
EPSS
0.63468
Risk score
48.21
CISA KEV
No
PoC
No
Published
2016-01-14
Modified
2026-05-29
First seen
2026-08-07
Aliases
EUVD-2016-0792, GHSA-9H73-2PQX-3JH8
Products
n/a:n/a n/a
Sources
euvd EUVD-2016-0792

Description

The resend_bytes function in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2 allows remote servers to obtain sensitive information from process memory by requesting transmission of an entire buffer, as demonstrated by reading a private key.

References