FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2025-07-02 12:59:00 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
5b74a5bc-348f-11e5-ba05-c80aa9043978OpenSSH -- MaxAuthTries limit bypass via duplicates in KbdInteractiveDevices

It was discovered that the OpenSSH sshd daemon did not check the list of keyboard-interactive authentication methods for duplicates. A remote attacker could use this flaw to bypass the MaxAuthTries limit, making it easier to perform password guessing attacks.


Discovery 2015-07-21
Entry 2015-07-27
Modified 2016-08-09
openssh-portable
< 6.9.p1_2,1

FreeBSD
>= 10.1 lt 10.1_16

>= 9.3 lt 9.3_21

>= 8.4 lt 8.4_36

https://access.redhat.com/security/cve/CVE-2015-5600
CVE-2015-5600
SA-15:16.openssh