cancel
Showing results for 
Search instead for 
Did you mean: 
SamPirok
Community Manager Community Manager
Community Manager

Summary

In OpenSSH, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) because the integer value of authenticated in mm_answer_authpassword does not resist flips of a single bit.

 

Products Potentially Affected

OS/Product

Exposure

IQ Engine (HiveOS)

Yes

 

Repair Recommendations

IQ Engine (HiveOS):

  • Fixed in 10.8r5 or later

Please see the full security advisory article here for more details and future updates. 

 

GTM-P2G8KFN