CVE-2016-7407 PUBLISHED

The dropbearconvert command in Dropbear SSH before 2016.74 allows attackers to execute arbitrary code via a crafted OpenSSH key file.

EPSS 1.03% · 77.2th percentile

Risk Scores

EPSS Score
1.03%
77.2th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSdropbear0, 2014.65-1ubuntu2, 2015.68-1

Timeline

References

Open in Interactive Console →