Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-2532

Опубликовано: 18 мар. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5.8
CVSS3: 4.9

Описание

sshd in OpenSSH before 6.6 does not properly support wildcards on AcceptEnv lines in sshd_config, which allows remote attackers to bypass intended environment restrictions by using a substring located before a wildcard character.

РелизСтатусПримечание
devel

released

1:6.6p1-1
lucid

released

1:5.3p1-3ubuntu7.1
precise

released

1:5.9p1-5ubuntu1.2
quantal

released

1:6.0p1-3ubuntu1.1
saucy

released

1:6.2p2-6ubuntu0.2
upstream

released

6.6p1

Показывать по

EPSS

Процентиль: 58%
0.00375
Низкий

5.8 Medium

CVSS2

4.9 Medium

CVSS3

Связанные уязвимости

redhat
больше 11 лет назад

sshd in OpenSSH before 6.6 does not properly support wildcards on AcceptEnv lines in sshd_config, which allows remote attackers to bypass intended environment restrictions by using a substring located before a wildcard character.

CVSS3: 4.9
nvd
больше 11 лет назад

sshd in OpenSSH before 6.6 does not properly support wildcards on AcceptEnv lines in sshd_config, which allows remote attackers to bypass intended environment restrictions by using a substring located before a wildcard character.

CVSS3: 4.9
debian
больше 11 лет назад

sshd in OpenSSH before 6.6 does not properly support wildcards on Acce ...

CVSS3: 4.9
github
больше 3 лет назад

sshd in OpenSSH before 6.6 does not properly support wildcards on AcceptEnv lines in sshd_config, which allows remote attackers to bypass intended environment restrictions by using a substring located before a wildcard character.

oracle-oval
почти 11 лет назад

ELSA-2014-1552: openssh security, bug fix, and enhancement update (MODERATE)

EPSS

Процентиль: 58%
0.00375
Низкий

5.8 Medium

CVSS2

4.9 Medium

CVSS3