Summary
In OpenSSH, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) because the integer value of authenticated in mm_answer_authpassword does not resist flips of a single bit.
Products Potentially Affected
|
OS/Product
|
Exposure
|
|
IQ Engine (HiveOS)
|
Yes
|
Repair Recommendations
IQ Engine (HiveOS):
Please see the full security advisory article here for more details and future updates.