[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-2578-1 rssh -- insufficient filtering of rsync command line

ID: oval:org.secpod.oval:def:600918Date: (C)2012-11-28   (M)2022-10-10
Class: PATCHFamily: unix




James Clawson discovered that rssh, a restricted shell for OpenSSH to be used with scp/sftp, rdist and cvs, was not correctly filtering command line options. This could be used to force the execution of a remote script and thus allow arbitrary command execution. Two CVE were assigned: CVE-2012-2251 Incorrect filtering of command line when using rsync protocol. It was for example possible to pass dangerous options after a "--" switch. The rsync protocol support has been added in a Debian specific patch, so this vulnerability doesn"t affect upstream. CVE-2012-2251 Incorrect filtering of the "--rsh" option: the filter preventing usage of the "--rsh=" option would not prevent passing "--rsh". This vulnerability affects upstream code.

Platform:
Debian 6.0
Product:
rssh
Reference:
DSA-2578-1
CVE-2012-2251
CVE-2012-2252
CVE    2
CVE-2012-2252
CVE-2012-2251
CPE    2
cpe:/a:rssh:rssh
cpe:/o:debian:debian_linux:6.0

© SecPod Technologies