Debian Security Update DSA-4382 rssh - security update

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,836
Reaction score
74
Credits
-1,257
Nick Cleaton discovered two vulnerabilities in rssh, a restricted shell that allows users to perform only scp, sftp, cvs, svnserve (Subversion), rdist and/or rsync operations. Missing validation in the rsync support could result in the bypass of this restriction, allowing the execution of arbitrary shell commands.

Continue reading...
 


Follow Linux.org

Staff online


Top