Disclosure Date: May 19, 2017 (last updated June 05, 2020)
The server in Dropbear before 2017.75 might allow post-authentication root remote code execution because of a double free in cleanup of TCP listeners when the -a option is enabled.