CVE-2016-7409: Dropbear SSH Project Dropbear SSH
Medium severity, CVSS 5.5. EPSS: 0.5% chance of exploitation in the next 30 days.
The dbclient and server in Dropbear SSH before 2016.74, when compiled with DEBUG_TRACE, allows local users to read process memory via the -v argument, related to a failed remote ident.
Affected products
- Dropbear SSH Project Dropbear SSH: up to and including 2016.73
Published 2017-03-03. Last modified 2026-06-17.