VDB
CVE-2018-15599
CVE-2018-15599
PUBLISHED
CVSS 5.300000190734863 MEDIUM
The recv_msg_userauth_request function in svr-auth.c in Dropbear through 2018.76 is prone to a user enumeration vulnerability because username validity affects how fields in SSH_MSG_USERAUTH messages are handled, a similar issue to CVE-2018-15473 in an unrelated codebase.
EPSS 2.69% · 85.3th percentile
Risk Scores
CVSS 3.0
5.300000190734863
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS Score
2.69%
85.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:16.04:LTS | dropbear | 2015.71-1, 2015.68-1, 2015.70-1 |
| Ubuntu:Pro:18.04:LTS | dropbear | 2017.75-2, 2017.75-3build1, * |
Timeline
- Aug 21, 2018 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 25, 2021 EPSS Score
- Oct 27, 2021 EPSS Score
- Mar 2, 2022 EPSS Score
- May 4, 2022 EPSS Score
- Jul 6, 2022 EPSS Score
- Sep 8, 2022 EPSS Score
- Nov 10, 2022 EPSS Score
- Jan 12, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
References
- https://ubuntu.com/security/CVE-2018-15599 third-party-advisory
- http://lists.ucc.gu.uwa.edu.au/pipermail/dropbear/2018q3/002108.html third-party-advisory
- http://lists.ucc.gu.uwa.edu.au/pipermail/dropbear/2018q3/002109.html third-party-advisory
- https://old.reddit.com/r/blackhat/comments/97ywnm/openssh_username_enumeration/e4e05n2/ third-party-advisory
- https://www.cve.org/CVERecord?id=CVE-2018-15599 third-party-advisory