Oval Definition:oval:org.mitre.oval:def:1138
Revision Date:2014-06-09Version:19
Title:Security Vulnerability Relating to scp(1) Command May Allow Attackers to Execute Arbitrary Commands
Description:scp in OpenSSH 4.2p1 allows attackers to execute arbitrary commands via filenames that contain shell metacharacters or spaces, which are expanded twice.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2006-0225
Platform(s):Sun Solaris 10
Sun Solaris 9
Product(s):
Definition Synopsis
  • Solaris 9 (SPARC)
  • Solaris 9 (SPARC) is installed
  • AND NOT Patch 114356-12 or later installed
  • OR Solaris 9 (x86)
  • Solaris 9 (x86) is installed
  • AND NOT Patch 114357-11 or later installed
  • OR Solaris 10 (SPARC)
  • Solaris 10 (SPARC) is installed
  • AND NOT Patch 123324-03 or later installed
  • OR Solaris 10 (x86)
  • Solaris 10 (x86) is installed
  • AND NOT Patch 123325-03 or later installed
  • BACK