logo

Fixing The New OpenSSH Roaming Bug | UpGuard

ID: 5b7b8a8a-6a8a-57be-b763-5486981ed81e

STIX ID: report--5b7b8a8a-6a8a-57be-b763-5486981ed81e

Feed Name: UpGuard Blog

Threat Score
65/100

Date Published: 2024-09-10

Date Updated: 2026-05-01

...
...

**Executive Summary:** The OpenSSH client 'roaming' bug (CVE-2016-0777/CVE-2016-0778) in OpenSSH 5.4–7.1 can be abused by a malicious SSH server to read client memory and potentially exfiltrate private SSH keys; vendors have published patches and a configuration workaround (UseRoaming no) to mitigate the issue.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.