A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.
Metrics
Affected Vendors & Products
References
History
Fri, 22 Nov 2024 12:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Mon, 16 Sep 2024 18:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2024-01-03T17:01:38.672Z
Updated: 2024-11-24T12:54:16.729Z
Reserved: 2023-11-07T23:07:50.073Z
Link: CVE-2023-6004
Vulnrichment
No data.
NVD
Status : Modified
Published: 2024-01-03T17:15:11.623
Modified: 2024-11-21T08:42:57.693
Link: CVE-2023-6004
Redhat