Vulnerability Bulletins

AIX OpenSSH vulnerability

   
Affected software IBM
 
CVE-2015-5352 A vulnerability in ssh when ForwardX11Trusted mode is not used, lacks a check of the refusal deadline for X connections, which makes it easier for remote attackers to bypass intended access restrictions via a connection outside of the permitted time window CVE(s): CVE-2015-5352 Affected product(s) and affected version(s): AIX 5.3, 6.1 and 7.1 VIOS 2.2.* Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/aix_openssh_vulnerability1?lang=en_us