Wind River Support Network

HomeDefectsLIN1018-3392
Fixed

LIN1018-3392 : Security Advisory - openssh - CVE-2019-6109

Created: Jan 15, 2019    Updated: Mar 14, 2019
Resolved Date: Mar 6, 2019
Found In Version: unknown
Fix Version: 10.18.44.5
Severity: Standard
Applicable for: Wind River Linux LTS 18
Component/s: Userspace

Description

OpenSSH has a vulnerability in the scp client utility. Due to missing character encoding in the progress display, the object name can be used to manipulate the client output, for example to employ ANSI codes to hide additional files being transferred.

https://nvd.nist.gov/vuln/detail/CVE-2019-6109 

CVEs


Live chat
Online