This issue was addressed by verifying host keys when connecting to a previously-known SSH server. This issue is fixed in iOS 13.1 and iPadOS 13.1. An attacker in a privileged network position may be able to intercept SSH traffic from the “Run script over SSH” action.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://support.apple.com/en-us/HT210603 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: apple
Published: 2020-10-27T20:08:54
Updated: 2024-08-04T21:31:37.608Z
Reserved: 2019-02-18T00:00:00
Link: CVE-2019-8901
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-10-27T21:15:13.947
Modified: 2020-10-30T02:02:10.053
Link: CVE-2019-8901
Redhat
No data.