Fabian Bäumer, Marcel Maehren, Marcus Brinkmann, and Jörg Schwenk discovered that Erlang OTP’s SSH module incorrect handled authentication. A remote attacker could use this issue to execute arbitrary commands without authentication, possibly leading to a system compromise.
{
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_name": "erlang",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-asn1",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-base",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-base-hipe",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-common-test",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-crypto",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-debugger",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-dev",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-dialyzer",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-diameter",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-edoc",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-eldap",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-erl-docgen",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-et",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-eunit",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-examples",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-ftp",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-inets",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-jinterface",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-manpages",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-megaco",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-mnesia",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-mode",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-nox",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-observer",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-odbc",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-os-mon",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-parsetools",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-public-key",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-reltool",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-runtime-tools",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-snmp",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-src",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-ssh",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-ssl",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-syntax-tools",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-tftp",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-tools",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-wx",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-x11",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        },
        {
            "binary_name": "erlang-xmerl",
            "binary_version": "1:22.2.7+dfsg-1ubuntu0.5"
        }
    ]
}
          {
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_name": "erlang",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-asn1",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-base",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-common-test",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-crypto",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-debugger",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-dev",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-dialyzer",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-diameter",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-edoc",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-eldap",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-erl-docgen",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-et",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-eunit",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-examples",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-ftp",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-inets",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-jinterface",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-manpages",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-megaco",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-mnesia",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-mode",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-nox",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-observer",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-odbc",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-os-mon",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-parsetools",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-public-key",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-reltool",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-runtime-tools",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-snmp",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-src",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-ssh",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-ssl",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-syntax-tools",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-tftp",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-tools",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-wx",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-x11",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        },
        {
            "binary_name": "erlang-xmerl",
            "binary_version": "1:24.2.1+dfsg-1ubuntu0.4"
        }
    ]
}
          {
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_name": "erlang",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-asn1",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-base",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-common-test",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-crypto",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-debugger",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-dev",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-dialyzer",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-diameter",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-edoc",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-eldap",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-erl-docgen",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-et",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-eunit",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-examples",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-ftp",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-inets",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-jinterface",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-manpages",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-megaco",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-mnesia",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-mode",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-nox",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-observer",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-odbc",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-os-mon",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-parsetools",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-public-key",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-reltool",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-runtime-tools",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-snmp",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-src",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-ssh",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-ssl",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-syntax-tools",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-tftp",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-tools",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-wx",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-x11",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        },
        {
            "binary_name": "erlang-xmerl",
            "binary_version": "1:25.3.2.8+dfsg-1ubuntu4.3"
        }
    ]
}