A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.
cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2024-01-03T17:01:38.672Z

Updated: 2024-09-16T17:53:27.202Z

Reserved: 2023-11-07T23:07:50.073Z

Link: CVE-2023-6004

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2024-01-03T17:15:11.623

Modified: 2024-09-16T18:15:53.167

Link: CVE-2023-6004

cve-icon Redhat

Severity : Low

Publid Date: 2023-12-18T00:00:00Z

Links: CVE-2023-6004 - Bugzilla