ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an agent to an attacker-controlled host.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-03-05T19:07:34
Updated: 2024-08-03T21:33:17.327Z
Reserved: 2021-03-05T00:00:00
Link: CVE-2021-28041
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-03-05T21:15:13.200
Modified: 2024-11-21T05:59:01.940
Link: CVE-2021-28041
Redhat