CVE-2016-0777 was announced on January 14th, 2016 and effects OpenSSH versions between 5.4 and 7.1. This means that the security hole has been open for more than 5 years. The critical flaw making CVE-2016-0777 possible was an experimental key exchange method known as 'roaming' which was enabled by default and... Read more »