Use-after-free vulnerability in the mm_answer_pam_free_ctx function in monitor.c in sshd in OpenSSH before 7.0 on non-OpenBSD platforms might allow local users to gain privileges by leveraging control of the sshd uid to send an unexpectedly early MONITOR_REQ_PAM_FREE_CTX request.
CVSS Details
- CVSS 3.1 Base Score: 7
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Aix 5.3 Openssh_advisory6 | — | — | Nov 16, 2015 | Aug 23, 2015 |
| Aix 6.1 Openssh_advisory6 | — | — | Nov 16, 2015 | Aug 23, 2015 |
| Aix 7.1 Openssh_advisory6 | — | — | Nov 16, 2015 | Aug 23, 2015 |
| Alpine Linux | — | Upgrade openssh | Aug 30, 2017 | Aug 23, 2015 |
| Debian | — | Upgrade openssh | Jul 30, 2024 | Aug 24, 2015 |
| F5 Big Ip | — | Update F5 BIG-IP to the latest version | Jun 17, 2026 | Sep 17, 2015 |
| Freebsd | — | Upgrade FreeBSDUpgrade openssh-portable | Dec 10, 2025 | Aug 21, 2015 |
| Gentoo Linux | — | Upgrade net-misc/openssh. | Oct 30, 2017 | Aug 23, 2015 |
| Ibm Aix | — | Apply the fix or workaround for openssh_advisory7Apply the fix or workaround for openssh_advisory6 | Nov 30, 2017 | Aug 23, 2015 |
| Openbsd Openssh | — | Upgrade to OpenSSH version 7.0 | Aug 31, 2015 | Aug 24, 2015 |
| Oracle Solaris | — | Upgrade network/openssh to version 7.1.0.1-0.175.3.5.0.5.0 on Solaris 11.3 | May 29, 2017 | Aug 23, 2015 |
| Oracle_linux | — | Upgrade openssh-ldapUpgrade pam_ssh_agent_authUpgrade openssh-clientsUpgrade openssh-keycatUpgrade openssh-server-sysvinitUpgrade openssh-askpassUpgrade opensshUpgrade openssh-server | May 12, 2016 | Aug 24, 2015 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Aug 11, 2015 |
| Suse | — | Upgrade openssh-askpass-gnomeUpgrade openssh-openssl1Upgrade openssh-helpersUpgrade openssh-askpassUpgrade opensshUpgrade openssh-openssl1-helpersUpgrade openssh-fips | Dec 18, 2015 | Aug 23, 2015 |
| Ubuntu | — | Upgrade openssh | Nov 19, 2024 | Aug 24, 2015 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub