Security Advisory
CVE-2005-2797
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
OpenSSH 4.0, and other versions before 4.2, does not properly handle dynamic port forwarding ("-D" option) when a listen address is not provided, which may cause OpenSSH to enable the GatewayPorts functionality.