CVE-2004-0175

Description

From CVE.org

Directory traversal vulnerability in scp for OpenSSH before 3.4p1 allows remote malicious servers to overwrite arbitrary files. NOTE: this may be a rediscovery of CVE-2000-0992.

Statement

Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.

Acknowledgements

Red Hat would like to thank the MIT Kerberos project for reporting this issue.

Frequently Asked Questions

Want to get errata notifications? Sign up here.