Mageia 2019-0067: openssh security update
Summary
In OpenSSH, scp.c in the scp client allows remote SSH servers to bypass
intended access restrictions via the filename of . or an empty filename
(CVE-2018-20685).
References
- https://bugs.mageia.org/show_bug.cgi?id=24191
- - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20685
Resolution
MGASA-2019-0067 - Updated openssh packages fix security vulnerability
SRPMS
- 6/core/openssh-7.5p1-2.3.mga6