[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2020-14145 -- OpenSSH vulnerability

Deprecated
ID: oval:org.secpod.oval:def:69260Date: (C)2021-02-19   (M)2023-12-20
Class: VULNERABILITYFamily: unix




The client side in OpenSSH 5.7 through 8.4 has an Observable Discrepancy leading to an information leak in the algorithm negotiation. This allows man-in-the-middle attackers to target initial connection attempts (where no host key for the server has been cached by the client).

Platform:
Ubuntu 16.04
Ubuntu 18.04
Ubuntu 20.04
Ubuntu 20.10
Linux Mint 18.x
Linux Mint 19.x
Linux Mint 20.x
Product:
openssh-client
Reference:
CVE-2020-14145
CVE    1
CVE-2020-14145
CPE    8
cpe:/o:ubuntu:ubuntu_linux:16.04
cpe:/o:linux_mint:linux_mint:20.x
cpe:/o:ubuntu:ubuntu_linux:18.04
cpe:/o:ubuntu:ubuntu_linux:20.04
...

© SecPod Technologies