Vulnerability Name:

CVE-2018-10933 (CCN-151331)

Assigned:2018-10-16
Published:2018-10-16
Updated:2019-10-09
Summary:A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4. A malicious client could create channels without first performing authentication, resulting in unauthorized access.
CVSS v3 Severity:9.1 Critical (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N)
8.4 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N/E:F/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): None
7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N)
7.0 High (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N/E:F/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): High
Availibility (A): None
CVSS v2 Severity:6.4 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): None
7.8 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:C/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): Complete
Availibility (A): None
Vulnerability Type:CWE-287
Vulnerability Consequences:Bypass Security
References:Source: MITRE
Type: CNA
CVE-2018-10933

Source: CCN
Type: IBM Security Bulletin 744291 (VRA - Vyatta 5600)
Vyatta 5600 vRouter Software Patches - Release 1801-s, 1801-t and 1801-u

Source: CCN
Type: Oracle CPUJan2019
Oracle Critical Patch Update Advisory - January 2019

Source: BID
Type: Third Party Advisory, VDB Entry
105677

Source: CCN
Type: BID-105677
Libssh CVE-2018-10933 Authentication Bypass Vulnerability

Source: CONFIRM
Type: Issue Tracking, Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10933

Source: XF
Type: UNKNOWN
libssh-cve201810933-sec-bypass(151331)

Source: CCN
Type: GitHub Web site
CVE-2018-10933-test

Source: CCN
Type: GitHub Web site
CVE-2018-10933

Source: MLIST
Type: Mailing List, Third Party Advisory
[debian-lts-announce] 20181018 [SECURITY] [DLA 1548-1] libssh security update

Source: CCN
Type: Packet Storm Security [10-19-2018]
libSSH Authentication Bypass

Source: CCN
Type: Packet Storm Security [02-03-2019]
LibSSH 0.7.6 / 0.8.4 Unauthorized Access

Source: CONFIRM
Type: Third Party Advisory
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2018-0016

Source: CCN
Type: oss-sec Mailing List, Tue, 16 Oct 2018 14:21:43 +0200
CVE-2018-10933: libssh: authentication bypass in server code

Source: CONFIRM
Type: Third Party Advisory
https://security.netapp.com/advisory/ntap-20190118-0002/

Source: CCN
Type: Cisco Security Advisory cisco-sa-20181019-libssh
libssh Authentication Bypass Vulnerability Affecting Cisco Products: October 2018

Source: UBUNTU
Type: Third Party Advisory
USN-3795-1

Source: UBUNTU
Type: Third Party Advisory
USN-3795-2

Source: DEBIAN
Type: Third Party Advisory
DSA-4322

Source: EXPLOIT-DB
Type: EXPLOIT
Offensive Security Exploit Database [10-18-2018]

Source: EXPLOIT-DB
Type: Exploit, Third Party Advisory, VDB Entry
45638

Source: CCN
Type: libssh Web site
libssh 0.8.4 and 0.7.6 security and bugfix release

Source: CONFIRM
Type: Vendor Advisory
https://www.libssh.org/security/advisories/CVE-2018-10933.txt

Source: CONFIRM
Type: Patch, Third Party Advisory
https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html

Source: CCN
Type: Rapid7 Web site
libssh Authentication Bypass Scanner

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2018-10933

Source: CCN
Type: ZDNet Web site
Security flaw in libssh leaves thousands of servers at risk of hijacking

Vulnerable Configuration:Configuration 1:
  • cpe:/a:libssh:libssh:*:*:*:*:*:*:*:* (Version >= 0.6.0 and < 0.7.6)
  • OR cpe:/a:libssh:libssh:*:*:*:*:*:*:*:* (Version >= 0.8.0 and < 0.8.4)

  • Configuration 2:
  • cpe:/o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
  • OR cpe:/o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
  • OR cpe:/o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
  • OR cpe:/o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*

  • Configuration 3:
  • cpe:/o:debian:debian_linux:8.0:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:9.0:*:*:*:*:*:*:*

  • Configuration 4:
  • cpe:/o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*

  • Configuration 5:
  • cpe:/a:netapp:oncommand_unified_manager:*:*:*:*:*:windows:*:* (Version >= 7.3
  • OR cpe:/a:netapp:oncommand_unified_manager:*:*:*:*:*:vsphere:*:* (Version >= 9.4
  • OR cpe:/a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:*
  • OR cpe:/a:netapp:snapcenter:-:*:*:*:*:*:*:*
  • OR cpe:/a:netapp:storage_automation_store:-:*:*:*:*:*:*:*

  • Configuration 6:
  • cpe:/a:oracle:mysql_workbench:*:*:*:*:*:*:*:* (Version <= 8.0.13)

  • Configuration CCN 1:
  • cpe:/a:libssh:libssh:0.6.0:*:*:*:*:*:*:*
  • OR cpe:/a:libssh:libssh:0.7.5:*:*:*:*:*:*:*
  • OR cpe:/a:libssh:libssh:0.8.3:*:*:*:*:*:*:*
  • AND
  • cpe:/o:ibm:virtual_router_appliance_firmware:vyatta_5600:*:*:*:*:*:*:*
  • OR cpe:/a:oracle:mysql_workbench:8.0.13:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:201810933
    V
    CVE-2018-10933
    2023-06-22
    oval:org.opensuse.security:def:8178
    P
    Security update for terraform-provider-helm (Important) (in QA)
    2023-06-20
    oval:org.opensuse.security:def:7567
    P
    libXt-devel-1.1.5-2.24 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:8186
    P
    Security update for cloud-init (Important) (in QA)
    2023-06-12
    oval:org.opensuse.security:def:7545
    P
    ldns-devel-1.7.0-150000.4.8.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7676
    P
    libssh-config-0.9.6-150400.1.5 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:798
    P
    Security update for colord (Moderate)
    2022-10-04
    oval:org.opensuse.security:def:6149
    P
    Security update for gstreamer-plugins-good (Important)
    2022-08-26
    oval:org.opensuse.security:def:6141
    P
    Security update for rsync (Important)
    2022-08-19
    oval:org.opensuse.security:def:3262
    P
    libssh4-0.8.7-1.31 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:124242
    P
    libssh4-0.6.3-12.6.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3084
    P
    gnome-settings-daemon-3.20.1-50.16.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:123845
    P
    libssh4-0.6.3-12.6.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:94714
    P
    libssh-config-0.9.6-150400.1.5 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:204
    P
    libssh-devel-0.8.7-10.12.1 on GA media (Moderate)
    2022-06-13
    oval:org.opensuse.security:def:488
    P
    Security update for ucode-intel (Moderate)
    2022-05-18
    oval:org.opensuse.security:def:1245
    P
    Security update for java-1_8_0-openjdk (Important)
    2022-03-16
    oval:org.opensuse.security:def:6171
    P
    Security update for MozillaFirefox (Important)
    2022-02-24
    oval:org.opensuse.security:def:112853
    P
    libssh-config-0.9.6-1.2 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:10428
    P
    Security update for MozillaFirefox (Important) (in QA)
    2022-01-14
    oval:org.opensuse.security:def:106316
    P
    Security update for busybox (Important) (in QA)
    2022-01-14
    oval:org.opensuse.security:def:9137
    P
    Security update for SDL2 (Important) (in QA)
    2022-01-12
    oval:org.opensuse.security:def:6298
    P
    Security update for libsndfile (Important)
    2022-01-11
    oval:org.opensuse.security:def:8726
    P
    Security update for apache2 (Important) (in QA)
    2022-01-10
    oval:org.opensuse.security:def:6279
    P
    Security update for libaom (Moderate)
    2021-12-23
    oval:org.opensuse.security:def:10706
    P
    Security update for xorg-x11-server (Important)
    2021-12-21
    oval:org.opensuse.security:def:6724
    P
    Security update for the Linux Kernel (Live Patch 24 for SLE 15) (Important)
    2021-12-14
    oval:org.opensuse.security:def:6264
    P
    Security update for python-pip (Moderate)
    2021-12-13
    oval:org.opensuse.security:def:8878
    P
    Security update for glib-networking (Important)
    2021-12-10
    oval:org.opensuse.security:def:6462
    P
    Security update for the Linux Kernel (Important)
    2021-12-06
    oval:org.opensuse.security:def:55275
    P
    Security update for xen (Moderate)
    2021-11-29
    oval:org.opensuse.security:def:6217
    P
    Security update for qemu (Important)
    2021-11-04
    oval:org.opensuse.security:def:8664
    P
    Security update for containerd, docker, runc (Important)
    2021-10-25
    oval:org.opensuse.security:def:1133
    P
    Security update for ncurses (Moderate)
    2021-10-20
    oval:org.opensuse.security:def:10164
    P
    Security update for strongswan (Moderate)
    2021-10-19
    oval:org.opensuse.security:def:6709
    P
    Security update for the Linux Kernel (Live Patch 24 for SLE 15) (Important)
    2021-10-12
    oval:org.opensuse.security:def:8845
    P
    Security update for curl (Moderate)
    2021-10-06
    oval:org.opensuse.security:def:10345
    P
    Security update for grilo (Important)
    2021-10-06
    oval:org.opensuse.security:def:10697
    P
    Security update for ffmpeg (Moderate)
    2021-10-06
    oval:org.opensuse.security:def:61577
    P
    libssh-devel-0.8.4-8.26 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61635
    P
    python3-libxml2-python-2.9.7-3.6.1 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61442
    P
    freetype2-devel-2.9-2.13 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61466
    P
    hardlink-1.0+git.e66999f-1.25 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:103387
    P
    libssh-devel-0.8.4-8.26 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:63226
    P
    nginx-1.14.0-4.24 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:71318
    P
    libssh-devel-0.8.4-8.26 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61443
    P
    fuse-2.9.7-3.3.1 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:96697
    P
    libssh-devel-0.8.4-8.26 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:89732
    P
    libssh-devel-0.8.4-8.26 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:10655
    P
    Security update for ffmpeg (Important)
    2021-09-02
    oval:org.opensuse.security:def:37537
    P
    Security update for openssl1 (Important)
    2021-08-24
    oval:org.opensuse.security:def:8820
    P
    Security update for go1.15 (Moderate)
    2021-08-20
    oval:org.opensuse.security:def:9569
    P
    Security update for nodejs8 (Important)
    2021-08-20
    oval:org.opensuse.security:def:10320
    P
    Security update for fetchmail (Moderate)
    2021-08-20
    oval:org.opensuse.security:def:47562
    P
    automake-1.13.4-6.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47471
    P
    pigz-2.3-5.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47314
    P
    libXfixes3-32bit-5.0.1-7.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48237
    P
    mailman-2.1.17-3.8.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47010
    P
    libblkid1-2.28-40.28 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47762
    P
    libpcsclite1-1.8.10-7.3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47777
    P
    libraptor2-0-2.0.10-3.63 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47470
    P
    perl-YAML-LibYAML-0.38-10.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47440
    P
    logrotate-3.11.0-1.15 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48315
    P
    supportutils-3.0.3-95.27.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47230
    P
    ctags-5.8-7.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48166
    P
    libotr5-4.0.0-9.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48008
    P
    fontconfig-2.11.1-7.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47763
    P
    libplist3-1.12-20.3.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47338
    P
    libdcerpc-binding0-32bit-4.6.5+git.27.6afd48b1083-2.11 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47376
    P
    libmodplug1-0.8.8.4-13.63 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48234
    P
    libzypp-16.20.0-2.39.4 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:87832
    P
    libssh4-0.6.3-12.6.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47791
    P
    libssh4-0.6.3-12.6.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48223
    P
    libwireshark9-2.4.16-48.51.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47016
    P
    libevent-2_0-5-2.0.21-4.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48135
    P
    libjpeg62-32bit-62.2.0-31.14.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47924
    P
    xinetd-2.3.15-8.8.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47145
    P
    rpcbind-0.2.3-21.4 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14671
    P
    libssh4-0.6.3-12.6.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48180
    P
    libpython2_7-1_0-2.7.13-28.31.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48091
    P
    libXxf86vm1-1.1.3-3.53 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48070
    P
    libSoundTouch0-1.7.1-5.11.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48201
    P
    libssh4-0.8.7-1.31 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47710
    P
    libgme0-0.6.0-5.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47542
    P
    zoo-2.10-1020.56 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47009
    P
    libasan2-32bit-5.3.1+r233831-9.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47024
    P
    libgraphite2-3-1.3.1-6.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47898
    P
    syslog-service-2.0-778.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:15081
    P
    libssh4-0.8.7-1.31 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:63125
    P
    kernel-azure-5.3.18-36.1 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:62761
    P
    ibus-chewing-1.6.1-1.53 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:71963
    P
    libssh-devel-0.8.7-10.12.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62993
    P
    bouncycastle-1.64-1.63 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62232
    P
    libtss2-esys0-2.4.5-1.11 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62222
    P
    libssh-devel-0.8.7-10.12.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62102
    P
    ipsec-tools-0.8.2-5.35 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:7122
    P
    Security update for the Linux Kernel (Live Patch 3 for SLE 15 SP2) (Important)
    2021-07-16
    oval:org.opensuse.security:def:10118
    P
    Security update for nodejs10 (Important)
    2021-07-15
    oval:org.opensuse.security:def:6907
    P
    Security update for the Linux Kernel (Live Patch 24 for SLE 15 SP1) (Important)
    2021-06-18
    oval:org.opensuse.security:def:7100
    P
    Security update for the Linux Kernel (Live Patch 11 for SLE 15 SP2) (Important)
    2021-06-18
    oval:org.opensuse.security:def:6449
    P
    Security update for java-1_8_0-openjdk (Moderate)
    2021-06-17
    oval:org.opensuse.security:def:36428
    P
    kernel-docs-3.0.101-63.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48823
    P
    argyllcms-1.6.3-3.3 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12310
    P
    p7zip-9.20.1-6.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36440
    P
    libcgroup-devel-0.41.rc1-2.34 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12618
    P
    libreoffice-6.0.5.2-43.38.5 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:10096
    P
    Security update for gstreamer-plugins-bad (Important)
    2021-06-08
    oval:org.opensuse.security:def:48463
    P
    libXRes1-1.0.7-3.53 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:77926
    P
    libssh4-0.6.3-12.6.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12567
    P
    libkpathsea6-6.2.0dev-22.3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12630
    P
    libssh4-0.6.3-12.6.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46646
    P
    dovecot22-2.2.13-2.7 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13269
    P
    bzip2-1.0.6-27.1129 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12386
    P
    yast2-users-3.2.11-1.47 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:11379
    P
    libmspack0-0.4-3.64 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:71088
    P
    python2-requests-2.18.4-1.35 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:16583
    P
    libssh-devel-0.6.3-12.6.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36429
    P
    kopete-devel-4.3.5-0.4.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12609
    P
    libproxy1-0.4.13-16.3 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12542
    P
    libexif12-0.6.21-8.3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46454
    P
    libXRes1-1.0.7-3.53 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12340
    P
    rpcbind-0.2.3-23.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13291
    P
    elfutils-0.158-3.200 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12467
    P
    gpgme-1.5.1-1.12 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:124589
    P
    libssh-devel-0.6.3-12.6.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48919
    P
    libIlmImf-Imf_2_1-21-32bit-2.1.0-6.3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12318
    P
    perl-Config-IniFiles-2.82-3.14 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48761
    P
    ImageMagick-6.8.8.1-33.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46869
    P
    xalan-j2-2.7.0-264.133 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48929
    P
    libjavascriptcoregtk-1_0-0-2.4.11-23.20 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12448
    P
    ft2demos-2.6.3-7.15.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:8596
    P
    Security update for pam_radius (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48888
    P
    typelib-1_0-EvinceDocument-3_0-3.20.1-5.66 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36524
    P
    obex-data-server-0.4.6-2.7.90 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12631
    P
    libstaroffice-0_0-0-0.0.5-7.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48677
    P
    java-1_7_0-openjdk-plugin-1.5.1-1.13 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:11357
    P
    libevent-2_0-5-2.0.21-4.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:70975
    P
    libgtk-vnc-2_0-0-0.7.2-1.33 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46778
    P
    libtiff5-32bit-4.0.4-12.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12433
    P
    dracut-044.1-9.5 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48875
    P
    libvdpau1-32bit-1.1.1-6.73 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:26066
    P
    Security update for gstreamer-plugins-bad (Important)
    2021-06-07
    oval:org.opensuse.security:def:8588
    P
    Security update for polkit (Important)
    2021-06-03
    oval:org.opensuse.security:def:10088
    P
    Security update for avahi (Important)
    2021-06-03
    oval:org.opensuse.security:def:55194
    P
    Security update for qemu (Important)
    2021-06-02
    oval:org.opensuse.security:def:6894
    P
    Security update for the Linux Kernel (Live Patch 23 for SLE 15 SP1) (Important)
    2021-05-25
    oval:org.opensuse.security:def:8316
    P
    Security update for the Linux Kernel (Important)
    2021-05-18
    oval:org.opensuse.security:def:8745
    P
    Security update for xen (Important)
    2021-04-30
    oval:org.opensuse.security:def:10245
    P
    Security update for cups (Important)
    2021-04-30
    oval:org.opensuse.security:def:6885
    P
    Security update for the Linux Kernel (Live Patch 12 for SLE 15 SP1) (Important)
    2021-04-28
    oval:org.opensuse.security:def:38335
    P
    Security update for util-linux (Important)
    2021-04-14
    oval:org.opensuse.security:def:6876
    P
    Security update for the Linux Kernel (Live Patch 23 for SLE 15 SP1) (Important)
    2021-04-07
    oval:org.opensuse.security:def:6662
    P
    Security update for the Linux Kernel (Live Patch 23 for SLE 15) (Important)
    2021-04-07
    oval:org.opensuse.security:def:10226
    P
    Security update for ruby2.5 (Important)
    2021-03-24
    oval:org.opensuse.security:def:8335
    P
    Security update for hawk2 (Important)
    2021-03-24
    oval:org.opensuse.security:def:8909
    P
    Security update for the Linux Kernel (Important)
    2021-03-09
    oval:org.opensuse.security:def:10409
    P
    Security update for python-cryptography (Important)
    2021-03-03
    oval:org.opensuse.security:def:8711
    P
    Security update for bind (Important)
    2021-03-02
    oval:org.opensuse.security:def:10406
    P
    Security update for bind (Important)
    2021-03-02
    oval:org.opensuse.security:def:10211
    P
    Security update for java-1_8_0-ibm (Important)
    2021-03-01
    oval:org.opensuse.security:def:8896
    P
    Security update for salt (Critical)
    2021-02-26
    oval:org.opensuse.security:def:10398
    P
    Security update for glibc (Important)
    2021-02-26
    oval:org.opensuse.security:def:10396
    P
    Security update for php7 (Important)
    2021-02-24
    oval:org.opensuse.security:def:69785
    P
    Security update for webkit2gtk3 (Important)
    2021-02-24
    oval:org.opensuse.security:def:55292
    P
    Security update for jasper (Important)
    2021-02-16
    oval:org.opensuse.security:def:8887
    P
    Security update for containerd, docker, docker-runc, golang-github-docker-libnetwork (Important)
    2021-02-11
    oval:org.opensuse.security:def:10387
    P
    Security update for subversion (Important)
    2021-02-10
    oval:org.opensuse.security:def:9547
    P
    Security update for go1.14 (Moderate)
    2021-01-26
    oval:org.opensuse.security:def:8618
    P
    Security update for sudo (Important)
    2021-01-26
    oval:org.opensuse.security:def:69890
    P
    Security update for sudo (Important)
    2021-01-26
    oval:org.opensuse.security:def:8254
    P
    Security update for hawk2 (Critical)
    2021-01-22
    oval:org.opensuse.security:def:26031
    P
    Security update for php74 (Moderate)
    2021-01-14
    oval:org.opensuse.security:def:55218
    P
    Security update for openssh (Moderate)
    2021-01-05
    oval:org.opensuse.security:def:6440
    P
    Security update for the Linux Kernel (Important)
    2020-12-10
    oval:org.opensuse.security:def:67735
    P
    Security update for the Linux Kernel (Live Patch 20 for SLE 15) (Important)
    2020-12-07
    oval:org.opensuse.security:def:6843
    P
    Security update for the Linux Kernel (Live Patch 10 for SLE 15 SP1) (Important)
    2020-12-07
    oval:org.opensuse.security:def:61908
    P
    libwscodecs1-2.4.16-3.31.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:100567
    P
    libssh-devel-0.8.7-10.12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63087
    P
    pam-modules-12.1-3.17 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63259
    P
    dovecot23-2.3.10-15.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:93854
    P
    libssh-devel-0.8.7-10.12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:1883
    P
    perl-Archive-Extract-0.80-1.24 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61887
    P
    libssh-devel-0.8.7-10.12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62442
    P
    libgnutls30-32bit-3.6.2-4.15 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:48990
    P
    gnome-online-accounts-3.20.8-10.4.50 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63176
    P
    python3-pywbem-0.11.0-2.21 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13075
    P
    libssh4-0.8.7-1.31 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:4057
    P
    libssh-devel-0.8.7-1.31 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:16893
    P
    libssh-devel-0.8.7-1.31 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:116791
    P
    libssh-devel-0.8.7-10.12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:107233
    P
    libssh-devel-0.8.7-10.12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62891
    P
    build-20190128-3.3.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:71628
    P
    libssh-devel-0.8.7-10.12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:6616
    P
    gnome-online-accounts on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37478
    P
    krb5-appl-clients on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49239
    P
    libssh-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:52819
    P
    Security update for the Linux Kernel (Live Patch 1 for SLE 15 SP1) (Important)
    2020-12-01
    oval:org.opensuse.security:def:17678
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:10630
    P
    Security update for xorg-x11-server (Important)
    2020-12-01
    oval:org.opensuse.security:def:36934
    P
    libpng15-15 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54325
    P
    libvte9 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25045
    P
    Security update for libcaca (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:53823
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:17947
    P
    Security update for libarchive (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:66442
    P
    libXinerama-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6743
    P
    libpoppler-glib8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:8477
    P
    opensc on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37925
    P
    libnetpbm11 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36818
    P
    davfs2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:53549
    P
    Security update for nodejs10 (Important)
    2020-12-01
    oval:org.opensuse.security:def:37586
    P
    libspice-client-glib-2_0-8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38377
    P
    libssh4 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24636
    P
    Security update for man (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:8410
    P
    libldap-2_4-2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6431
    P
    libsmi on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:73107
    P
    ipsec-tools on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6594
    P
    empathy on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37318
    P
    quagga on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54990
    P
    puppet on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37287
    P
    openssh on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:52581
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:17647
    P
    Security update for libvdpau (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10555
    P
    libtool on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49185
    P
    liblcms2-2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36838
    P
    gdk-pixbuf-loader-rsvg on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:8208
    P
    rtkit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50320
    P
    Security update for libssh (Important)
    2020-12-01
    oval:org.opensuse.security:def:17463
    P
    Security update for libsolv (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36850
    P
    guestfs-data on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54152
    P
    MozillaFirefox on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24962
    P
    Security update for glibc (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:53749
    P
    Security update for Mozilla Thunderbird (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:17925
    P
    Security update for php5 (Important)
    2020-12-01
    oval:org.opensuse.security:def:9159
    P
    libssh4 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36761
    P
    sysvinit-tools on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:53264
    P
    Security update for libvirt (Important)
    2020-12-01
    oval:org.opensuse.security:def:17856
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55156
    P
    kernel-default on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25393
    P
    Security update for libqt5-qtbase (Important)
    2020-12-01
    oval:org.opensuse.security:def:6398
    P
    liblua5_2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:52418
    P
    Security update for postgresql10 (Important)
    2020-12-01
    oval:org.opensuse.security:def:37228
    P
    libmysqlclient18 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54882
    P
    libksba8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37243
    P
    libpulse-mainloop-glib0-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18585
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:52441
    P
    Security update for golang-github-prometheus-prometheus (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:17590
    P
    Security update for MozillaFirefox, mozilla-nspr, mozilla-nss (Important)
    2020-12-01
    oval:org.opensuse.security:def:10536
    P
    libraptor-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37127
    P
    glib2-lang on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37697
    P
    update-alternatives on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:73225
    P
    libssh-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36839
    P
    gdm on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:53914
    P
    Security update for bluez (Important)
    2020-12-01
    oval:org.opensuse.security:def:24906
    P
    Security update for atftp (Important)
    2020-12-01
    oval:org.opensuse.security:def:17913
    P
    Security update for quagga (Low)
    2020-12-01
    oval:org.opensuse.security:def:10719
    P
    libasm-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50266
    P
    Security update for ucode-intel (Important)
    2020-12-01
    oval:org.opensuse.security:def:46320
    P
    Security update for grub2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:64388
    P
    libssh-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24626
    P
    Security update for sqlite3 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:46334
    P
    Security update for grub2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:36660
    P
    libgnomesu on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:53098
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:17824
    P
    Security update for tiff (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55082
    P
    ctags on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25349
    P
    Security update for bluez (Important)
    2020-12-01
    oval:org.opensuse.security:def:11047
    P
    libpng16-compat-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:56625
    P
    Security update for libssh (Important)
    2020-12-01
    oval:org.opensuse.security:def:6586
    P
    dnsmasq on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6373
    P
    libfbembed2_5 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37171
    P
    libXinerama1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54597
    P
    libraw9 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25248
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:37215
    P
    libjson-c2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:53942
    P
    cups-filters on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:67635
    P
    krb5 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:52419
    P
    Security update for libqt5-qtbase (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:17505
    P
    Security update for openldap2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:10521
    P
    libmusicbrainz-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:8499
    P
    ppc64-diag on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:53751
    P
    Security update for enigmail (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37068
    P
    apache2-mod_jk on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37653
    P
    python on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:53774
    P
    Security update for bluez (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24825
    P
    Security update for log4j (Important)
    2020-12-01
    oval:org.opensuse.security:def:8468
    P
    libzip2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18611
    P
    Security update for libssh (Important)
    2020-12-01
    oval:org.opensuse.security:def:46321
    P
    Security update for the Linux Kernel (Live Patch 28 for SLE 12 SP3) (Important)
    2020-12-01
    oval:org.opensuse.security:def:52992
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:17714
    P
    Security update for ghostscript (Low)
    2020-12-01
    oval:org.opensuse.security:def:25335
    P
    Security update for u-boot (Important)
    2020-12-01
    oval:org.opensuse.security:def:64301
    P
    libXfixes-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:8301
    P
    elfutils on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:56551
    P
    Security update for libsndfile (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:66534
    P
    libssh-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37070
    P
    apache2-mod_perl on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54431
    P
    busybox on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25195
    P
    Security update for audiofile (Low)
    2020-12-01
    oval:org.opensuse.security:def:37176
    P
    libXtst6 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:53861
    P
    Security update for LibVNCServer (Important)
    2020-12-01
    oval:org.opensuse.security:def:37967
    P
    libssh4 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:17471
    P
    Security update for perl-DBI (Important)
    2020-12-01
    oval:org.opensuse.security:def:10474
    P
    libXrender-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6818
    P
    ppp on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:8486
    P
    pam_krb5 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:11069
    P
    libssh-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36908
    P
    libgudev-1_0-0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:53657
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37625
    P
    ntp on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:53752
    P
    Security update for ffmpeg (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24699
    P
    Security update for squid (Important)
    2020-12-01
    oval:org.opensuse.security:def:8435
    P
    libpulse-mainloop-glib0-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:79259
    P
    Security update for libssh (Important)
    2018-10-19
    oval:com.ubuntu.xenial:def:2018109330000000
    V
    CVE-2018-10933 on Ubuntu 16.04 LTS (xenial) - medium.
    2018-10-17
    oval:com.ubuntu.bionic:def:201810933000
    V
    CVE-2018-10933 on Ubuntu 18.04 LTS (bionic) - medium.
    2018-10-17
    oval:com.ubuntu.cosmic:def:201810933000
    V
    CVE-2018-10933 on Ubuntu 18.10 (cosmic) - medium.
    2018-10-17
    oval:com.ubuntu.cosmic:def:2018109330000000
    V
    CVE-2018-10933 on Ubuntu 18.10 (cosmic) - medium.
    2018-10-17
    oval:com.ubuntu.trusty:def:201810933000
    V
    CVE-2018-10933 on Ubuntu 14.04 LTS (trusty) - medium.
    2018-10-17
    oval:com.ubuntu.bionic:def:2018109330000000
    V
    CVE-2018-10933 on Ubuntu 18.04 LTS (bionic) - medium.
    2018-10-17
    oval:com.ubuntu.xenial:def:201810933000
    V
    CVE-2018-10933 on Ubuntu 16.04 LTS (xenial) - medium.
    2018-10-17
    BACK
    libssh libssh *
    libssh libssh *
    canonical ubuntu linux 14.04
    canonical ubuntu linux 16.04
    canonical ubuntu linux 18.04
    canonical ubuntu linux 18.10
    debian debian linux 8.0
    debian debian linux 9.0
    redhat enterprise linux 7.0
    netapp oncommand unified manager *
    netapp oncommand unified manager *
    netapp oncommand workflow automation -
    netapp snapcenter -
    netapp storage automation store -
    oracle mysql workbench *
    libssh libssh 0.6.0
    libssh libssh 0.7.5
    libssh libssh 0.8.3
    ibm virtual router appliance firmware vyatta_5600
    oracle mysql workbench 8.0.13