SSH Secure Shell for Servers 3.0.0 to 3.1.1 allows remote attackers to override the AllowedAuthentications configuration and use less secure authentication schemes (e.g. password) than configured for the server.
| Software | From | Fixed in |
|---|---|---|
| ssh / secure_shell_for_servers | 3.1.1 | 3.1.1.x |
| ssh / secure_shell_for_servers | 3.1 | 3.1.x |
| ssh / secure_shell_for_servers | 3.0 | 3.0.x |
| ssh / secure_shell_for_servers | 3.0.1 | 3.0.1.x |