[CLSA-2022:1656962023] Fixed CVE-2016-10009 in openssh-5.3p1
Type:
security
Severity:
Important
Release date:
2022-07-04
Description:
- CVE-2016-10009: add whitelist of paths which may ssh-agent load from in order to prevent execution of arbitrary local pkcs#11
Updated packages:
  • pam_ssh_agent_auth-0.9.3-125.el6.tuxcare.els1.x86_64.rpm
    sha:c28acde0e75d62f44ac26493424ba517d17f7ba4
  • openssh-ldap-5.3p1-125.el6.tuxcare.els1.x86_64.rpm
    sha:21193649a28f7666037a651ca0595801f26e23c6
  • openssh-clients-5.3p1-125.el6.tuxcare.els1.x86_64.rpm
    sha:369adabda82c9f83e52b21bf654c004175f1da2a
  • openssh-askpass-5.3p1-125.el6.tuxcare.els1.x86_64.rpm
    sha:a49d23f127e83befc4fc9b8249a997894af132f4
  • openssh-5.3p1-125.el6.tuxcare.els1.x86_64.rpm
    sha:a9a4abc5a4a407b814f53295ca4553a424d844aa
  • pam_ssh_agent_auth-0.9.3-125.el6.tuxcare.els1.i686.rpm
    sha:79093e253a129d1647f8d389851c37b7f46ebda7
  • openssh-server-5.3p1-125.el6.tuxcare.els1.x86_64.rpm
    sha:40e9ab1f886f15e44350a12a884f648546c60569
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.