[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247974

 
 

909

 
 

194654

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RCP, SunSSH - (cpuapr2019)

ID: oval:org.secpod.oval:def:2100366Date: (C)2019-12-31   (M)2023-03-01
Class: PATCHFamily: unix




In OpenSSH 7.9, scp.c in the scp client allows remote SSH servers to bypass intended access restrictions via the filename of . or an empty filename. The impact is modifying the permissions of the target directory on the client side.

Platform:
Sun Solaris 11
Product:
network/ssh
consolidation/osnet/osnet-incorporation
Reference:
cpuapr2019
CVE-2018-20685
CVE    1
CVE-2018-20685
CPE    2
cpe:/o:oracle:solaris:11
cpe:/o:oracle:solaris:10

© SecPod Technologies