A design flaw in the SSH specification allows an attacker with control over the network to recover up to 32 bits of plaintext from an SSH-protected connection in the standard configuration. The vulnerability has been verified against OpenSSH 4.7p1; other versions may also be susceptible.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/72061/Vulnerability_Advisory_SSH.txt
Source: https://packetstormsecurity.com/files/72061/Vulnerability_Advisory_SSH.txt.html

