[Git][security-tracker-team/security-tracker][master] Add advisory and short description for CVE-2023-6004
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Dec 26 20:53:54 GMT 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
202bb125 by Salvatore Bonaccorso at 2023-12-26T21:53:19+01:00
Add advisory and short description for CVE-2023-6004
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -6206,8 +6206,9 @@ CVE-2023-6918 (A flaw was found in the libssh implements abstract layer for mess
NOTE: https://gitlab.com/libssh/libssh-mirror/-/commit/8b66d037d575e5f3ce4d35964547ff8c7e75ff8e (libssh-0.10.6)
NOTE: https://gitlab.com/libssh/libssh-mirror/-/commit/8977e246b6d7ae467cab008a49e0a9e3d84bc2a0 (libssh-0.10.6)
NOTE: https://gitlab.com/libssh/libssh-mirror/-/commit/622421018b58392ffecc29726b947e089b678221 (libssh-0.10.6)
-CVE-2023-6004
+CVE-2023-6004 [ProxyCommand/ProxyJump features enable to inject malicious code through hostname]
- libssh 0.10.6-1 (bug #1059061)
+ NOTE: https://www.libssh.org/security/advisories/CVE-2023-6004.txt
NOTE: https://gitlab.com/libssh/libssh-mirror/-/commit/c2c56bacab00766d01671413321d564227aabf19 (libssh-0.10.6)
NOTE: https://gitlab.com/libssh/libssh-mirror/-/commit/a66b4a6eae6614d200a3625862d77565b96a7cd3 (libssh-0.10.6)
NOTE: https://gitlab.com/libssh/libssh-mirror/-/commit/8615c24647f773a5e04203c7459512715d698be1 (libssh-0.10.6)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/202bb1252bbfdc06821ee30508fc0a6e5250d4da
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/202bb1252bbfdc06821ee30508fc0a6e5250d4da
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231226/12ad19c9/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list