CVE
- Id
- 87503
- CVE No.
- CVE-2016-10011
- Status
- Candidate
- Description
- authfile.c in sshd in OpenSSH before 7.4 does not properly consider the effects of realloc on buffer contents, which might allow local users to obtain sensitive private-key information by leveraging access to a privilege-separated child process.
- Phase
- Assigned (20161219)
- Votes
- None (candidate not yet proposed)
- Comments