Wind River Support Network

HomeDefectsLIN9-8006
Fixed

LIN9-8006 : Security Advisory - openssh - CVE-2018-20685

Created: Jan 15, 2019    Updated: Feb 25, 2019
Resolved Date: Feb 20, 2019
Found In Version: 9.0.0.19
Fix Version: 9.0.0.20
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Userspace

Description

In OpenSSH 7.9, scp.c in the scp client allows remote SSH servers to bypass intended access restrictions via the filename of . or an empty filename.

https://nvd.nist.gov/vuln/detail/CVE-2018-20685

CVEs


Live chat
Online