2017-10-16 12:31:07 -04:00
{
2019-03-18 00:16:49 +00:00
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org" ,
"ID" : "CVE-2008-1657" ,
"STATE" : "PUBLIC"
} ,
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a" ,
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
} ,
"vendor_name" : "n/a"
}
2017-10-16 12:31:07 -04:00
]
2019-03-18 00:16:49 +00:00
}
} ,
"data_format" : "MITRE" ,
"data_type" : "CVE" ,
"data_version" : "4.0" ,
"description" : {
"description_data" : [
{
"lang" : "eng" ,
"value" : "OpenSSH 4.4 up to versions before 4.9 allows remote authenticated users to bypass the sshd_config ForceCommand directive by modifying the .ssh/rc session file."
}
]
} ,
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng" ,
"value" : "n/a"
}
]
}
]
} ,
"references" : {
"reference_data" : [
{
"name" : "28531" ,
"refsource" : "BID" ,
"url" : "http://www.securityfocus.com/bid/28531"
} ,
{
"name" : "http://support.attachmate.com/techdocs/2374.html" ,
"refsource" : "CONFIRM" ,
"url" : "http://support.attachmate.com/techdocs/2374.html"
} ,
{
"name" : "USN-649-1" ,
"refsource" : "UBUNTU" ,
"url" : "http://www.ubuntu.com/usn/usn-649-1"
} ,
{
"name" : "32110" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/32110"
} ,
{
"name" : "https://issues.rpath.com/browse/RPL-2419" ,
"refsource" : "CONFIRM" ,
"url" : "https://issues.rpath.com/browse/RPL-2419"
} ,
{
"name" : "APPLE-SA-2008-09-15" ,
"refsource" : "APPLE" ,
"url" : "http://lists.apple.com/archives/security-announce//2008/Sep/msg00005.html"
} ,
{
"name" : "29609" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/29609"
} ,
{
"name" : "31531" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/31531"
} ,
{
"name" : "[4.3] 001: SECURITY FIX: March 30, 2008" ,
"refsource" : "OPENBSD" ,
"url" : "http://www.openbsd.org/errata43.html#001_openssh"
} ,
{
"name" : "http://aix.software.ibm.com/aix/efixes/security/ssh_advisory.asc" ,
"refsource" : "CONFIRM" ,
"url" : "http://aix.software.ibm.com/aix/efixes/security/ssh_advisory.asc"
} ,
{
"name" : "TA08-260A" ,
"refsource" : "CERT" ,
"url" : "http://www.us-cert.gov/cas/techalerts/TA08-260A.html"
} ,
{
"name" : "http://www.openssh.com/txt/release-4.9" ,
"refsource" : "CONFIRM" ,
"url" : "http://www.openssh.com/txt/release-4.9"
} ,
{
"name" : "1019733" ,
"refsource" : "SECTRACK" ,
"url" : "http://www.securitytracker.com/id?1019733"
} ,
{
"name" : "ADV-2008-1624" ,
"refsource" : "VUPEN" ,
"url" : "http://www.vupen.com/english/advisories/2008/1624/references"
} ,
{
"name" : "ADV-2008-2584" ,
"refsource" : "VUPEN" ,
"url" : "http://www.vupen.com/english/advisories/2008/2584"
} ,
{
"name" : "29735" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/29735"
} ,
{
"name" : "29683" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/29683"
} ,
{
"name" : "30361" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/30361"
} ,
{
"name" : "31882" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/31882"
} ,
{
"name" : "SUSE-SR:2008:009" ,
"refsource" : "SUSE" ,
"url" : "http://lists.opensuse.org/opensuse-security-announce/2008-04/msg00007.html"
} ,
{
"name" : "32080" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/32080"
} ,
{
"name" : "ADV-2008-2396" ,
"refsource" : "VUPEN" ,
"url" : "http://www.vupen.com/english/advisories/2008/2396"
} ,
{
"name" : "29939" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/29939"
} ,
{
"name" : "ADV-2008-1035" ,
"refsource" : "VUPEN" ,
"url" : "http://www.vupen.com/english/advisories/2008/1035/references"
} ,
{
"name" : "29602" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/29602"
} ,
{
"name" : "20080404 rPSA-2008-0139-1 gnome-ssh-askpass openssh openssh-client openssh-server" ,
"refsource" : "BUGTRAQ" ,
"url" : "http://www.securityfocus.com/archive/1/490488/100/0/threaded"
} ,
{
"name" : "NetBSD-SA2008-005" ,
"refsource" : "NETBSD" ,
"url" : "ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2008-005.txt.asc"
} ,
{
"name" : "http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0139" ,
"refsource" : "CONFIRM" ,
"url" : "http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0139"
} ,
{
"name" : "29693" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/29693"
} ,
{
"name" : "MDVSA-2008:098" ,
"refsource" : "MANDRIVA" ,
"url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2008:098"
} ,
{
"name" : "GLSA-200804-03" ,
"refsource" : "GENTOO" ,
"url" : "http://www.gentoo.org/security/en/glsa/glsa-200804-03.xml"
} ,
{
"name" : "openssh-forcecommand-command-execution(41549)" ,
"refsource" : "XF" ,
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/41549"
}
]
}
}