---
cve: "CVE-2015-6565"
severity: "LOW"
cvss: 3.1
epss: "2.7%"
vendor: "n/a"
kev: false
exploited: false
published: "2015-08-24 01:59:02"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-20T19:09:41+02:00"
---

# CVE-2015-6565

> 3.1 LOW · 🧪 PoC

## Beschreibung

sshd in OpenSSH 6.8 and 6.9 uses world-writable permissions for TTY devices, which allows local users to cause a denial of service (terminal disruption) or possibly have unspecified other impact by writing to a device, as demonstrated by writing an escape sequence.

## Exploit-Evidenz

- [EDB-41173 — OpenSSH 6.8 < 6.9 - 'PTY' Local Privilege Escalation](https://www.exploit-db.com/exploits/41173)

## Referenzen

- <http://www.openwall.com/lists/oss-security/2015/08/22/1>
- <https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05131085>
- <https://security.gentoo.org/glsa/201512-04>
- <http://www.securitytracker.com/id/1033917>
- <https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05150888>
- <http://www.openssh.com/txt/release-7.0>
- <https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05158380>
- <https://www.exploit-db.com/exploits/41173/>
- <http://openwall.com/lists/oss-security/2017/01/26/2>
- <http://www.securityfocus.com/bid/76497>
- <https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2015-6565) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
