UbuntuUpdates.org

Bugs fixes in "rssh"

Origin Bug number Title Date fixed
CVE CVE-2019-3464 Insufficient sanitization of environment variables passed to rsync can bypass the restrictions imposed by rssh, a restricted shell that should restri 2019-04-11
CVE CVE-2019-3463 Insufficient sanitization of arguments passed to rsync can bypass the restrictions imposed by rssh, a restricted shell that should restrict users to 2019-04-11
CVE CVE-2019-1000018 rssh version 2.3.4 contains a CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in allowscp p 2019-04-11
Launchpad 1815935 Regression in 2.3.4-4+deb8u1build0.16.04.1 on scp command parsing 2019-04-11
CVE CVE-2019-3464 Insufficient sanitization of environment variables passed to rsync can bypass the restrictions imposed by rssh, a restricted shell that should restri 2019-04-11
CVE CVE-2019-3463 Insufficient sanitization of arguments passed to rsync can bypass the restrictions imposed by rssh, a restricted shell that should restrict users to 2019-04-11
CVE CVE-2019-1000018 rssh version 2.3.4 contains a CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in allowscp p 2019-04-11
Launchpad 1815935 Regression in 2.3.4-4+deb8u1build0.16.04.1 on scp command parsing 2019-04-11
Debian 921655 rssh 2.3.4-4+deb8u2 breaks download of multiple files. - Debian Bug report logs 2019-02-12
Debian 921655 rssh 2.3.4-4+deb8u2 breaks download of multiple files. - Debian Bug report logs 2019-02-12



About   -   Send Feedback to @ubuntu_updates