[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-SUSE-SU-2017:0607-1":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T02:55:30.529Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":11,"aliases":12,"duplicate_of":9,"upstream":13,"downstream":20,"duplicates":21,"related":22,"reserved_at":9,"published_at":26,"modified_at":27,"state":9,"summary":28,"references_raw":30,"kevs":71,"epss":9,"epss_history":72,"metrics":73,"affected":74},"SUSE-SU-2017:0607-1","Security update for openssh\n\n\nThis update for openssh fixes the following issues:\n\n- CVE-2016-8858: prevent resource depletion during key exchange (bsc#1005480)\n- CVE-2016-10009: limit directories for loading PKCS11 modules to avoid privilege escalation (bsc#1016366)\n- CVE-2016-10011: Prevent possible leaks of host private keys to low-privilege process handling authentication (bsc#1016369)\n\n- Fix suggested command for removing conflicting server keys from the known_hosts file (bsc#1006221)\n- Properly verify CIDR masks in the AllowUsers and DenyUsers configuration lists (bsc#1005893)\n",null,[],[],[],[14,16,18],{"_key":15},"CVE-2016-10009",{"_key":17},"CVE-2016-10011",{"_key":19},"CVE-2016-8858",[],[],[23,24,25],{"_key":15},{"_key":17},{"_key":19},"2017-03-06T10:26:48Z","2026-02-04T02:17:59.971600Z",{"cisa_kev":29,"cisa_ransomware":29,"cisa_vendor":9,"epss_severity":9,"epss_score":9,"severity":9,"severity_score":9,"severity_version":9,"severity_source":9,"severity_vector":9,"severity_status":9},false,[31,37,42,46,50,54,58,63,67],{"url":32,"sources":33,"tags":35},"https://www.suse.com/support/update/announcement/2017/suse-su-20170607-1/",[34],"osv_suse",[36],"Advisory",{"url":38,"sources":39,"tags":40},"https://bugzilla.suse.com/1005480",[34],[41],"REPORT",{"url":43,"sources":44,"tags":45},"https://bugzilla.suse.com/1005893",[34],[41],{"url":47,"sources":48,"tags":49},"https://bugzilla.suse.com/1006221",[34],[41],{"url":51,"sources":52,"tags":53},"https://bugzilla.suse.com/1016366",[34],[41],{"url":55,"sources":56,"tags":57},"https://bugzilla.suse.com/1016369",[34],[41],{"url":59,"sources":60,"tags":61},"https://www.suse.com/security/cve/CVE-2016-10009",[34],[62],"WEB",{"url":64,"sources":65,"tags":66},"https://www.suse.com/security/cve/CVE-2016-10011",[34],[62],{"url":68,"sources":69,"tags":70},"https://www.suse.com/security/cve/CVE-2016-8858",[34],[62],[],[],[],[75,88,92,97],{"ecosystem":76,"name":77,"vendor":78,"product":79,"cpe_part":9,"purl_type":80,"purl_namespace":78,"purl_name":79,"source":9,"versions":81},"SUSE Linux Enterprise","openssh-askpass-gnome","suse","openssh-askpass-gnome&distro=SUSE Linux Enterprise Server 12 SP1","rpm",[82],{"version":83,"is_range":84,"range_type":85,"version_start":9,"version_start_type":9,"version_end":86,"version_end_type":87,"fixed_in":9},"lt6_6p1_54_7_1",true,"ecosystem","6.6p1-54.7.1","excluding",{"ecosystem":76,"name":77,"vendor":78,"product":89,"cpe_part":9,"purl_type":80,"purl_namespace":78,"purl_name":89,"source":9,"versions":90},"openssh-askpass-gnome&distro=SUSE Linux Enterprise Server for SAP Applications 12 SP1",[91],{"version":83,"is_range":84,"range_type":85,"version_start":9,"version_start_type":9,"version_end":86,"version_end_type":87,"fixed_in":9},{"ecosystem":76,"name":93,"vendor":78,"product":94,"cpe_part":9,"purl_type":80,"purl_namespace":78,"purl_name":94,"source":9,"versions":95},"openssh","openssh&distro=SUSE Linux Enterprise Server 12 SP1",[96],{"version":83,"is_range":84,"range_type":85,"version_start":9,"version_start_type":9,"version_end":86,"version_end_type":87,"fixed_in":9},{"ecosystem":76,"name":93,"vendor":78,"product":98,"cpe_part":9,"purl_type":80,"purl_namespace":78,"purl_name":98,"source":9,"versions":99},"openssh&distro=SUSE Linux Enterprise Server for SAP Applications 12 SP1",[100],{"version":83,"is_range":84,"range_type":85,"version_start":9,"version_start_type":9,"version_end":86,"version_end_type":87,"fixed_in":9}]