Описание
Untrusted search path vulnerability in ssh-agent.c in ssh-agent in OpenSSH before 7.4 allows remote attackers to execute arbitrary local PKCS#11 modules by leveraging control over a forwarded agent-socket.
Релиз | Статус | Примечание |
---|---|---|
artful | not-affected | 1:7.4p1-1 |
bionic | not-affected | 1:7.4p1-1 |
cosmic | not-affected | 1:7.4p1-1 |
devel | not-affected | 1:7.4p1-1 |
disco | not-affected | 1:7.4p1-1 |
eoan | not-affected | 1:7.4p1-1 |
esm-infra-legacy/trusty | not-affected | 1:6.6p1-2ubuntu2.10 |
esm-infra/bionic | not-affected | 1:7.4p1-1 |
esm-infra/focal | not-affected | 1:7.4p1-1 |
esm-infra/xenial | not-affected | 1:7.2p2-4ubuntu2.4 |
Показывать по
EPSS
7.5 High
CVSS2
7.3 High
CVSS3
Связанные уязвимости
Untrusted search path vulnerability in ssh-agent.c in ssh-agent in OpenSSH before 7.4 allows remote attackers to execute arbitrary local PKCS#11 modules by leveraging control over a forwarded agent-socket.
Untrusted search path vulnerability in ssh-agent.c in ssh-agent in OpenSSH before 7.4 allows remote attackers to execute arbitrary local PKCS#11 modules by leveraging control over a forwarded agent-socket.
Untrusted search path vulnerability in ssh-agent.c in ssh-agent in Ope ...
Untrusted search path vulnerability in ssh-agent.c in ssh-agent in OpenSSH before 7.4 allows remote attackers to execute arbitrary local PKCS#11 modules by leveraging control over a forwarded agent-socket.
Уязвимость агента ssh-agent средства криптографической защиты OpenSSH, позволяющая нарушителю выполнить произвольный код
EPSS
7.5 High
CVSS2
7.3 High
CVSS3