OS Command Injection Affecting openssh-portable package, versions [,9.6-p1)


Severity

Recommended
0.0
medium
0
10

CVSS assessment by Snyk's Security Team. Learn more

Threat Intelligence

Exploit Maturity
Proof of Concept
EPSS
19.75% (98th percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-UNMANAGED-OPENSSHPORTABLE-6132367
  • published20 Dec 2023
  • disclosed18 Dec 2023
  • creditUnknown

Introduced: 18 Dec 2023

CVE-2023-51385  (opens in a new tab)
CWE-78  (opens in a new tab)

How to fix?

Upgrade openssh-portable to version 9.6-p1 or higher.

Overview

Affected versions of this package are vulnerable to OS Command Injection due to improper handling of user names or host names containing shell metacharacters. A remote attacker may be able to execute arbitrary OS commands by using expansion tokens (e.g., %u, %h) with such user names or host names.

CVSS Base Scores

version 3.1