Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Gentoo: GLSA-200602-12 Medium: OpenSSH Dropbear Security Threat

gentoo
Calendar Grey February 20, 2006
Dist Gentoo Esm H88
An issue in OpenSSH and Dropbear allows local users to gain elevated privileges through scp. Security patch is suggested for protection.
A flaw in OpenSSH and Dropbear allows local users to elevate their privileges via scp.

Summary

Gentoo Linux Security Advisory GLSA 200602-11 https://security.gentoo.org/ Severity: Low Title: OpenSSH, Dropbear: Insecure use of system() call Date: February 20, 2006 Bugs: #119232 ID: 200602-11

Synopsis ======= A flaw in OpenSSH and Dropbear allows local users to elevate their privileges via scp.
Background ========= OpenSSH is a free application suite consisting of server and clients that replace tools like telnet, rlogin, rcp and ftp with more secure versions offering additional functionality. Dropbear is an SSH server and client designed with a small memory footprint that includes OpenSSH scp code.
...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Severity
low
Lowest
Low
Medium
High
Critical

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Your message here