Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in SSH server that can result in RCE. This attack appear to be exploitable via network connectivity.
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Paramiko | Paramiko | 1.17.6 (including) | 1.17.6 (including) |
Paramiko | Paramiko | 1.18.5 (including) | 1.18.5 (including) |
Paramiko | Paramiko | 2.0.8 (including) | 2.0.8 (including) |
Paramiko | Paramiko | 2.1.5 (including) | 2.1.5 (including) |
Paramiko | Paramiko | 2.2.3 (including) | 2.2.3 (including) |
Paramiko | Paramiko | 2.3.2 (including) | 2.3.2 (including) |
Paramiko | Paramiko | 2.4.1 (including) | 2.4.1 (including) |
Red Hat Enterprise Linux 6 | RedHat | python-paramiko-0:1.7.5-5.el6_10 | * |
Red Hat Enterprise Linux 6.4 Advanced Update Support | RedHat | python-paramiko-0:1.7.5-4.el6_4.1 | * |
Red Hat Enterprise Linux 6.5 Advanced Update Support | RedHat | python-paramiko-0:1.7.5-4.el6_5.1 | * |
Red Hat Enterprise Linux 6.6 Advanced Update Support | RedHat | python-paramiko-0:1.7.5-4.el6_6.1 | * |
Red Hat Enterprise Linux 6.6 Telco Extended Update Support | RedHat | python-paramiko-0:1.7.5-4.el6_6.1 | * |
Red Hat Enterprise Linux 6.7 Extended Update Support | RedHat | python-paramiko-0:1.7.5-4.el6_7.1 | * |
Red Hat Enterprise Linux 7 | RedHat | python-paramiko-0:2.1.1-9.el7 | * |
Red Hat Virtualization 4 for Red Hat Enterprise Linux 7 | RedHat | rhvm-appliance-0:4.2-20181026.1.el7 | * |
Red Hat Virtualization 4 for Red Hat Enterprise Linux 7 | RedHat | imgbased-0:1.0.29-1.el7ev | * |
Red Hat Virtualization 4 for Red Hat Enterprise Linux 7 | RedHat | redhat-release-virtualization-host-0:4.2-7.3.el7 | * |
Red Hat Virtualization 4 for Red Hat Enterprise Linux 7 | RedHat | redhat-virtualization-host-0:4.2-20181026.0.el7_6 | * |
Paramiko | Ubuntu | bionic | * |
Paramiko | Ubuntu | cosmic | * |
Paramiko | Ubuntu | devel | * |
Paramiko | Ubuntu | esm-infra-legacy/trusty | * |
Paramiko | Ubuntu | esm-infra/bionic | * |
Paramiko | Ubuntu | esm-infra/xenial | * |
Paramiko | Ubuntu | trusty | * |
Paramiko | Ubuntu | trusty/esm | * |
Paramiko | Ubuntu | upstream | * |
Paramiko | Ubuntu | xenial | * |