Vulnerabilities > Openbsd > Openssh > 4.1

DATE CVE VULNERABILITY TITLE RISK
2006-11-08 CVE-2006-5794 Unspecified vulnerability in Openbsd Openssh
Unspecified vulnerability in the sshd Privilege Separation Monitor in OpenSSH before 4.5 causes weaker verification that authentication has been successful, which might allow attackers to bypass authentication.
network
low complexity
openbsd
7.5
2006-10-10 CVE-2006-5229 Information Exposure vulnerability in Openbsd Openssh 4.1
OpenSSH portable 4.1 on SUSE Linux, and possibly other platforms and versions, and possibly under limited configurations, allows remote attackers to determine valid usernames via timing discrepancies in which responses take longer for valid usernames than invalid ones, as demonstrated by sshtime.
network
high complexity
openbsd novell CWE-200
2.6
2006-09-27 CVE-2006-5051 Double Free vulnerability in multiple products
Signal handler race condition in OpenSSH before 4.4 allows remote attackers to cause a denial of service (crash), and possibly execute arbitrary code if GSSAPI authentication is enabled, via unspecified vectors that lead to a double-free.
network
high complexity
openbsd debian apple CWE-415
8.1