GHSA-p759-vw7c-cvg8 · Severity: medium — Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote...
Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions.
Conclusion & alert: CVE-2016-3115 is rated High Exploit Risk (70/100): CVSS Medium severity, with high exploitation likelihood (EPSS 37.02%, 98th percentile). Core evidence: 1 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
| EDB-ID | Source | Kind | Published | Link |
|---|---|---|---|---|
| 39569 | exploit_db | edb | 2016-03-16 | Exploit-DB ↗ |
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 50.37% | 37.02% | -13.35% |
| 2 | 2026-05-30 | 47.11% | 50.37% | +3.26% |
| 3 | 2026-05-20 | — | 47.11% | — |
Full EPSS history (47 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 6.4 | 3.1 | MEDIUM |
|
3.1 | 2.7 | 134c704f-9b21-4f2e-91b3-4a467353bcc0 |
| 6.4 | 3.0 | MEDIUM |
|
3.1 | 2.7 | [email protected] |
| 5.5 | 2.0 | MEDIUM |
|
8.0 | 4.9 | [email protected] |
GHSA-p759-vw7c-cvg8 · Severity: medium — Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote...
| vendor | priority | summary | link |
|---|---|---|---|
debian
|
not yet assigned | CVE-2016-3115 not yet assigned priority: Debian including 1 source packages (openssh), 5 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 5. | https://security-tracker.debian.org/tracker/CVE-2016-3115 |
gentoo
|
normal | CVE-2016-3115: 1 GLSA(s) (201612-18), 1 atom(s) (net-misc/openssh); latest impact normal. | https://bugs.gentoo.org/buglist.cgi?quicksearch=CVE-2016-3115 |
redhat
|
medium | — | https://access.redhat.com/security/cve/CVE-2016-3115 |
suse
|
medium | CVE-2016-3115 severity moderate: SUSE including 42 source package names (openssh, openssh-5.1p1-41.74.1, …), 148 product×package rows across 50 product lines (SUSE CaaS Platform 4.5, SUSE Enterprise Storage 7, … (50 product lines)): Fixed 90, Known Not Affected 58. | https://www.suse.com/security/cve/CVE-2016-3115/ |
ubuntu
|
low | CVE-2016-3115 low priority: Ubuntu including 1 source packages (openssh), 7 status rows across 7 suites (precise, trusty, upstream, wily, xenial, yakkety, zesty): released 4, not-affected 3. | https://ubuntu.com/security/CVE-2016-3115 |
: <a href="https://cwe.mitre.org/data/definitions/93.html">CWE-93: Improper Neutralization of CRLF Sequences ('CRLF Injection')</a>