[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-SUSE-SU-2016:1528-1":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T08:55:32.481Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":11,"aliases":12,"duplicate_of":9,"upstream":13,"downstream":20,"duplicates":21,"related":22,"reserved_at":9,"published_at":26,"modified_at":27,"state":9,"summary":28,"references_raw":30,"kevs":91,"epss":9,"epss_history":92,"metrics":93,"affected":94},"SUSE-SU-2016:1528-1","Security update for openssh\n\nopenssh was updated to fix three security issues.\n\nThese security issues were fixed:\n- CVE-2016-3115: Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH allowed remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions  (bsc#970632).\n- CVE-2016-1908: Possible fallback from untrusted to trusted X11 forwarding (bsc#962313).\n- CVE-2015-8325: Ignore PAM environment vars when UseLogin=yes (bsc#975865).\n\nThese non-security issues were fixed:\n- Correctly parse GSSAPI KEX algorithms (bsc#961368)\n- More verbose FIPS mode/CC related documentation in README.FIPS (bsc#965576, bsc#960414)\n- Fix PRNG re-seeding (bsc#960414, bsc#729190)\n- Disable DH parameters under 2048 bits by default and allow lowering the limit back to the RFC 4419 specified minimum through an option (bsc#932483, bsc#948902)\n- Allow empty Match blocks (bsc#961494) \n  ",null,[],[],[],[14,16,18],{"_key":15},"CVE-2015-8325",{"_key":17},"CVE-2016-1908",{"_key":19},"CVE-2016-3115",[],[],[23,24,25],{"_key":15},{"_key":17},{"_key":19},"2016-06-08T10:46:21Z","2026-02-04T04:05:36.702478Z",{"cisa_kev":29,"cisa_ransomware":29,"cisa_vendor":9,"epss_severity":9,"epss_score":9,"severity":9,"severity_score":9,"severity_version":9,"severity_source":9,"severity_vector":9,"severity_status":9},false,[31,37,42,46,50,54,58,62,66,70,74,78,83,87],{"url":32,"sources":33,"tags":35},"https://www.suse.com/support/update/announcement/2016/suse-su-20161528-1/",[34],"osv_suse",[36],"Advisory",{"url":38,"sources":39,"tags":40},"https://bugzilla.suse.com/729190",[34],[41],"REPORT",{"url":43,"sources":44,"tags":45},"https://bugzilla.suse.com/932483",[34],[41],{"url":47,"sources":48,"tags":49},"https://bugzilla.suse.com/948902",[34],[41],{"url":51,"sources":52,"tags":53},"https://bugzilla.suse.com/960414",[34],[41],{"url":55,"sources":56,"tags":57},"https://bugzilla.suse.com/961368",[34],[41],{"url":59,"sources":60,"tags":61},"https://bugzilla.suse.com/961494",[34],[41],{"url":63,"sources":64,"tags":65},"https://bugzilla.suse.com/962313",[34],[41],{"url":67,"sources":68,"tags":69},"https://bugzilla.suse.com/965576",[34],[41],{"url":71,"sources":72,"tags":73},"https://bugzilla.suse.com/970632",[34],[41],{"url":75,"sources":76,"tags":77},"https://bugzilla.suse.com/975865",[34],[41],{"url":79,"sources":80,"tags":81},"https://www.suse.com/security/cve/CVE-2015-8325",[34],[82],"WEB",{"url":84,"sources":85,"tags":86},"https://www.suse.com/security/cve/CVE-2016-1908",[34],[82],{"url":88,"sources":89,"tags":90},"https://www.suse.com/security/cve/CVE-2016-3115",[34],[82],[],[],[],[95,108,112,119],{"ecosystem":96,"name":97,"vendor":98,"product":99,"cpe_part":9,"purl_type":100,"purl_namespace":98,"purl_name":99,"source":9,"versions":101},"SUSE Linux Enterprise","openssh-askpass-gnome","suse","openssh-askpass-gnome&distro=SUSE Linux Enterprise Server 11 SP4","rpm",[102],{"version":103,"is_range":104,"range_type":105,"version_start":9,"version_start_type":9,"version_end":106,"version_end_type":107,"fixed_in":9},"lt6_6p1_21_3",true,"ecosystem","6.6p1-21.3","excluding",{"ecosystem":96,"name":97,"vendor":98,"product":109,"cpe_part":9,"purl_type":100,"purl_namespace":98,"purl_name":109,"source":9,"versions":110},"openssh-askpass-gnome&distro=SUSE Linux Enterprise Server for SAP Applications 11 SP4",[111],{"version":103,"is_range":104,"range_type":105,"version_start":9,"version_start_type":9,"version_end":106,"version_end_type":107,"fixed_in":9},{"ecosystem":96,"name":113,"vendor":98,"product":114,"cpe_part":9,"purl_type":100,"purl_namespace":98,"purl_name":114,"source":9,"versions":115},"openssh","openssh&distro=SUSE Linux Enterprise Server 11 SP4",[116],{"version":117,"is_range":104,"range_type":105,"version_start":9,"version_start_type":9,"version_end":118,"version_end_type":107,"fixed_in":9},"lt6_6p1_21_1","6.6p1-21.1",{"ecosystem":96,"name":113,"vendor":98,"product":120,"cpe_part":9,"purl_type":100,"purl_namespace":98,"purl_name":120,"source":9,"versions":121},"openssh&distro=SUSE Linux Enterprise Server for SAP Applications 11 SP4",[122],{"version":117,"is_range":104,"range_type":105,"version_start":9,"version_start_type":9,"version_end":118,"version_end_type":107,"fixed_in":9}]