LWN.net Logo

rssh: shell command injection

Package(s):rssh CVE #(s):CVE-2012-3478
Created:August 16, 2012 Updated:September 11, 2012
Description:

From the Debian advisory:

Henrik Erkkonen discovered that rssh, a restricted shell for SSH, does not properly restrict shell access.

Alerts:
Debian DSA-2530-1 2012-08-15
Fedora FEDORA-2012-20109 2012-12-19

(Log in to post comments)

rssh: shell command injection

Posted Sep 11, 2012 11:53 UTC (Tue) by Darkstar (guest, #28767) [Link]

Oh, the irony. A restricted shell for SSH that doesn't restrict shell access...

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds