UbuntuUpdates.org

Package "rsh-server"

Name: rsh-server

Description:

server program for remote shell connections

Latest version: 0.17-17ubuntu0.1
Release: bionic (18.04)
Level: security
Repository: universe
Head package: netkit-rsh

Links


Download "rsh-server"


Other versions of "rsh-server" in Bionic

Repository Area Version
base universe 0.17-17
updates universe 0.17-17ubuntu0.1

Changelog

Version: 0.17-17ubuntu0.1 2022-03-15 14:06:23 UTC

  netkit-rsh (0.17-17ubuntu0.1) bionic-security; urgency=medium

  * SECURITY UPDATE: Permissions alteration of client target directory
    - Verify if a dot, slash, or null character is supplied in the filename
      to prevent modifying permissions of the target directory on the client
      side.
    - CVE-2019-7282
  * Fix for the error function in rcp.c to prevent a segfault when printing
    some errors related to CVE-2019-7282

 -- David Fernandez Gonzalez <email address hidden> Fri, 11 Mar 2022 16:38:41 +0100

CVE-2019-7282 In NetKit through 0.17, rcp.c in the rcp client allows remote rsh servers to bypass intended access restrictions via the filename of . or an empty fi



About   -   Send Feedback to @ubuntu_updates