CVE Vulnerabilities

CVE-2012-3478

Published: Aug 31, 2012 | Modified: Mar 02, 2013
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

rssh 2.3.3 and earlier allows local users to bypass intended restricted shell access via crafted environment variables in the command line.

Affected Software

Name Vendor Start Version End Version
Rssh Pizzashack * 2.3.2 (including)
Rssh Pizzashack 2.0.0 (including) 2.0.0 (including)
Rssh Pizzashack 2.0.1 (including) 2.0.1 (including)
Rssh Pizzashack 2.0.2 (including) 2.0.2 (including)
Rssh Pizzashack 2.0.3 (including) 2.0.3 (including)
Rssh Pizzashack 2.0.4 (including) 2.0.4 (including)
Rssh Pizzashack 2.1.0 (including) 2.1.0 (including)
Rssh Pizzashack 2.1.1 (including) 2.1.1 (including)
Rssh Pizzashack 2.2.1 (including) 2.2.1 (including)
Rssh Pizzashack 2.2.2 (including) 2.2.2 (including)
Rssh Pizzashack 2.2.3 (including) 2.2.3 (including)
Rssh Pizzashack 2.3.0 (including) 2.3.0 (including)
Rssh Pizzashack 2.3.1 (including) 2.3.1 (including)
Rssh Ubuntu hardy *
Rssh Ubuntu lucid *
Rssh Ubuntu natty *
Rssh Ubuntu oneiric *
Rssh Ubuntu precise *
Rssh Ubuntu upstream *

References