stable

libssh-0.10.6-2.fc38

FEDORA-2023-55800423a8 created by jjelen a year ago for Fedora 38

Fix regression in IPv6 hosntames parsing


New upstream release fixing (CVE-2023-48795, CVE-2023-6004, CVE-2023-6918)

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2023-55800423a8

This update has been submitted for testing by jjelen.

a year ago

This update's test gating status has been changed to 'waiting'.

a year ago

This update has obsoleted libssh-0.10.6-1.fc38, and has inherited its bugs and notes.

a year ago

This update's test gating status has been changed to 'failed'.

a year ago

This update's test gating status has been changed to 'waiting'.

a year ago

This update's test gating status has been changed to 'failed'.

a year ago

This update's test gating status has been changed to 'waiting'.

a year ago

This update's test gating status has been changed to 'failed'.

a year ago

This update has been pushed to testing.

a year ago
karma
User Icon filiperosset commented & provided feedback a year ago
karma

no regressions noted

User Icon abhis3k commented & provided feedback a year ago
karma

Works without issues till now

This update's test gating status has been changed to 'passed'.

a year ago

This update has been submitted for stable by bodhi.

a year ago

This update has been pushed to stable.

a year ago

Please login to add feedback.

Metadata
Type
security
Severity
medium
Karma
3
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
14 days
Dates
submitted
a year ago
in testing
a year ago
in stable
a year ago
approved
a year ago
BZ#2251110 CVE-2023-6004 libssh: ProxyCommand/ProxyJump features allow injection of malicious code through hostname
0
0
BZ#2254210 CVE-2023-48795 ssh: Prefix truncation attack on Binary Packet Protocol (BPP)
0
0
BZ#2254997 CVE-2023-6918 libssh: Missing checks for return values for digests
0
0
BZ#2255047 CVE-2023-48795 libssh: ssh: Prefix truncation attack on Binary Packet Protocol (BPP) [fedora-all]
0
0
BZ#2255152 CVE-2023-6004 libssh: ProxyCommand/ProxyJump features allow injection of malicious code through hostname [fedora-all]
0
0
BZ#2255159 TRIAGE CVE-2023-6918 libssh: Missing checks for return values for digests [fedora-all]
0
0

Automated Test Results