An issue was discovered in OpenSSH 7.9. Due to missing character encoding in the progress display, a malicious server (or Man-in-The-Middle attacker) can employ crafted object names to manipulate the client output, e.g., by using ANSI control codes to hide additional files being transferred. This affects refresh_progress_meter() in progressmeter.c.
References
| Link | Resource |
|---|---|
| https://sintonen.fi/advisories/scp-client-multiple-vulnerabilities.txt | Third Party Advisory |
| https://cvsweb.openbsd.org/src/usr.bin/ssh/scp.c | Release Notes Vendor Advisory |
| https://cvsweb.openbsd.org/src/usr.bin/ssh/progressmeter.c | Release Notes Vendor Advisory |
| https://usn.ubuntu.com/3885-1/ | Third Party Advisory |
| https://www.debian.org/security/2019/dsa-4387 | Third Party Advisory |
| https://security.netapp.com/advisory/ntap-20190213-0001/ | Third Party Advisory |
| https://security.gentoo.org/glsa/201903-16 | Third Party Advisory |
| https://lists.debian.org/debian-lts-announce/2019/03/msg00030.html | Third Party Advisory |
| https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/W3YVQ2BPTOVDCFDVNC2GGF5P5ISFG37G/ | |
| http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00058.html | |
| https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html | |
| https://access.redhat.com/errata/RHSA-2019:3702 |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Information
Published : 2019-01-31 18:29
Updated : 2020-08-24 17:37
NVD link : CVE-2019-6109
Mitre link : CVE-2019-6109
JSON object : View
Products Affected
canonical
- ubuntu_linux
netapp
- storage_automation_store
- ontap_select_deploy
- element_software
winscp
- winscp
debian
- debian_linux
openbsd
- openssh
CWE
CWE-116
Improper Encoding or Escaping of Output
