[CLSA-2023:1703785060] openssh: Fix of CVE-2023-51385
Type:
security
Severity:
Critical
Release date:
2023-12-28
Description:
- CVE-2023-51385: ban user/hostnames with most shell metacharacters in command line
Updated packages:
  • openssh-8.7p1-30.el9_2.tuxcare.els3.x86_64.rpm
    sha:eea7acaac13b2bf4fbd87e8f4d08142e419eec78
  • openssh-askpass-8.7p1-30.el9_2.tuxcare.els3.x86_64.rpm
    sha:4cd0822c4c2bd217a5b72bd3220dc014b536650a
  • openssh-clients-8.7p1-30.el9_2.tuxcare.els3.x86_64.rpm
    sha:2fc86f029ab26c1e0e064ff4d26743f03f945525
  • openssh-keycat-8.7p1-30.el9_2.tuxcare.els3.x86_64.rpm
    sha:be943c3394eeb69ad0dd2a610a7f995e237a53aa
  • openssh-server-8.7p1-30.el9_2.tuxcare.els3.x86_64.rpm
    sha:682adc5c59fc49df1afede8607d37494889155d2
  • openssh-sk-dummy-8.7p1-30.el9_2.tuxcare.els3.x86_64.rpm
    sha:d2230aeffc812ff7306920e723db1d9b0b060ba9
  • pam_ssh_agent_auth-0.10.4-5.30.el9_2.tuxcare.els3.x86_64.rpm
    sha:19f6ae7f5d7e783727762e52b55a3b3570f40026
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.