Debian Security Update DSA-4377 rssh - security update

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,834
Reaction score
74
Credits
-1,257
The ESnet security team discovered a vulnerability in rssh, a restricted shell that allows users to perform only scp, sftp, cvs, svnserve (Subversion), rdist and/or rsync operations. Missing validation in the scp support could result in the bypass of this restriction, allowing the execution of arbitrary shell commands.

Continue reading...
 


Follow Linux.org

Staff online

Members online


Top