[Bug 3200] New: Will future versions of openssh fix CVE-2020-15778?

bugzilla-daemon at mindrot.org bugzilla-daemon at mindrot.org
Sat Aug 8 14:22:17 AEST 2020


https://bugzilla.mindrot.org/show_bug.cgi?id=3200

            Bug ID: 3200
           Summary: Will future versions of openssh fix CVE-2020-15778?
           Product: Portable OpenSSH
           Version: 8.3p1
          Hardware: ARM64
                OS: Linux
            Status: NEW
          Severity: security
          Priority: P5
         Component: scp
          Assignee: unassigned-bugs at mindrot.org
          Reporter: kircherlike at outlook.com

Although separating the scp function from the ssh is a difficult task,
it is inappropriate to run commands in the scp that transfers files.
Will OpenSSH be able to restore the CVE? 

https://github.com/cpandya2909/CVE-2020-15778

-- 
You are receiving this mail because:
You are watching the assignee of the bug.


More information about the openssh-bugs mailing list