CVE-2015-6563
6.4 MEDIUMThe monitor component in sshd in OpenSSH before 7.0 on non-OpenBSD platforms accepts extraneous username data in MONITOR_REQ_PAM_INIT_CTX...
Published: 2015-08-24 · Last updated: 2026-05-27
Severity and scoring
- CVSS
- 6.4 MEDIUM
- Vector
- CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
- CWE
- CWE-20
Affected products
| Vendor | Product |
|---|---|
| apple | mac_os_x, openssh |
| openbsd | mac_os_x, openssh |
Description
The monitor component in sshd in OpenSSH before 7.0 on non-OpenBSD platforms accepts extraneous username data in MONITOR_REQ_PAM_INIT_CTX requests, which allows local users to conduct impersonation attacks by leveraging any SSH login access in conjunction with control of the sshd uid to send a crafted MONITOR_REQ_PWNAM request, related to monitor.c and monitor_wrap.c.
Source: NVD
References
- [NVD]https://nvd.nist.gov/vuln/detail/CVE-2015-6563
- [Other]http://lists.apple.com/archives/security-announce/2015/Oct/msg00005.html
- [Other]http://lists.fedoraproject.org/pipermail/package-announce/2015-August/165170.html
- [Other]http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00017.html
- [Other]http://rhn.redhat.com/errata/RHSA-2016-0741.html
- [Other]http://seclists.org/fulldisclosure/2015/Aug/54
- [Vendor advisory]http://www.openssh.com/txt/release-7.0
- [Other]http://www.openwall.com/lists/oss-security/2015/08/22/1
- [Other]http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.html
- [Other]http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- [Other]http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html
- [Other]http://www.securityfocus.com/bid/76317
- [Other]https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf
- [Other]https://github.com/openssh/openssh-portable/commit/d4697fe9a28dab7255c60433e4dd23cf7fce8a8b
- [Other]https://lists.debian.org/debian-lts-announce/2018/09/msg00010.html
- [Other]https://security.gentoo.org/glsa/201512-04
- [Other]https://security.netapp.com/advisory/ntap-20180201-0002/
- [Other]https://support.apple.com/HT205375
- [Other]https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2019-766
- [Other]http://lists.apple.com/archives/security-announce/2015/Oct/msg00005.html
- [Other]http://lists.fedoraproject.org/pipermail/package-announce/2015-August/165170.html
- [Other]http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00017.html
- [Other]http://rhn.redhat.com/errata/RHSA-2016-0741.html
- [Other]http://seclists.org/fulldisclosure/2015/Aug/54
- [Vendor advisory]http://www.openssh.com/txt/release-7.0
- [Other]http://www.openwall.com/lists/oss-security/2015/08/22/1
- [Other]http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.html
- [Other]http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- [Other]http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html
- [Other]http://www.securityfocus.com/bid/76317
- [Other]https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf
- [Other]https://github.com/openssh/openssh-portable/commit/d4697fe9a28dab7255c60433e4dd23cf7fce8a8b
- [Other]https://lists.debian.org/debian-lts-announce/2018/09/msg00010.html
- [Other]https://security.gentoo.org/glsa/201512-04
- [Other]https://security.netapp.com/advisory/ntap-20180201-0002/
- [Other]https://support.apple.com/HT205375
- [Other]https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2019-766
Related CVEs
Same vendor
- CVE-2025-46315 — A permissions issue was addressed with additional restrictions (7.5 HIGH)
- CVE-2025-46313 — A logging issue was addressed with improved data redaction (5.5 MEDIUM)
- CVE-2025-46308 — An authorization issue was addressed with improved state management (5.3 MEDIUM)
- CVE-2025-46293 — This issue was addressed with improved handling of symlinks (5.5 MEDIUM)
- CVE-2025-43339 — An access issue was addressed with additional sandbox restrictions (5.5 MEDIUM)
Same CWE
- CVE-2026-12191 — A vulnerability was found in Comma AI Openpilot 0.11 (7.8 HIGH)
- CVE-2026-45013 — ApostropheCMS is an open-source Node.js content management system (8.1 HIGH)
- CVE-2026-54133 — jmespath.php allows users to use JMESPath, software for declaratively specifying how to extract elements from a JSON document, in PHP app... (9.8 CRITICAL)
- CVE-2026-47196 — Quest Bot is an opensource Discord Bot
- CVE-2026-50633 — A JNDI Injection vulnerability has been discovered in Apache CXF's JCA integration module, which can allow for code execution, if an atta... (8.1 HIGH)