CESA-2018:3347 -- centos 7 python-paramikoID: oval:org.secpod.oval:def:205127 | Date: (C)2018-12-18 (M)2023-12-20 |
Class: PATCH | Family: unix |
The python-paramiko package provides a Python module that implements the SSH2 protocol for encrypted and authenticated connections to remote machines. Unlike SSL, the SSH2 protocol does not require hierarchical certificates signed by a powerful central authority. The protocol also includes the ability to open arbitrary channels to remote services across an encrypted tunnel. Security Fix: * python-paramiko: Authentication bypass in auth_handler.py For more details about the security issue, including the impact, a CVSS score, and other related information, refer to the CVE page listed in the References section.