Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2018-3347

Опубликовано: 07 нояб. 2018
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2018-3347: python-paramiko security update (CRITICAL)

[2.1.1-9]

  • Fix a security flaw (CVE-2018-1000805) in Paramiko's server mode (does not effect client mode). Backported from 2.1.6 Resolves rhbz#1637366

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

python-paramiko

2.1.1-9.el7

python-paramiko-doc

2.1.1-9.el7

Oracle Linux x86_64

python-paramiko

2.1.1-9.el7

python-paramiko-doc

2.1.1-9.el7

Связанные CVE

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 7 лет назад

Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in SSH server that can result in RCE. This attack appear to be exploitable via network connectivity.

CVSS3: 9.8
redhat
около 7 лет назад

Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in SSH server that can result in RCE. This attack appear to be exploitable via network connectivity.

CVSS3: 8.8
nvd
около 7 лет назад

Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in SSH server that can result in RCE. This attack appear to be exploitable via network connectivity.

CVSS3: 8.8
debian
около 7 лет назад

Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 con ...

suse-cvrf
больше 6 лет назад

Security update for python-paramiko