CVE-2016-10011

authfile.c in sshd in OpenSSH before 7.4 does not properly consider the effects of realloc on buffer contents, which might allow local users to obtain sensitive private-key information by leveraging access to a privilege-separated child process.

Date published : 2017-01-04

http://www.securityfocus.com/bid/94977

http://www.slackware.com/security/viewer.php?l=slackware-security&y=2016&m=slackware-security.647637