blob: 9886cc5decf679d25d2dfa06bd55aade45f11429 [file] [log] [blame]
id: GO-2024-2836
modules:
- module: github.com/cea-hpc/sshproxy
versions:
- fixed: 1.6.3
vulnerable_at: 1.6.2
summary: sshproxy vulnerable to SSH option injection in github.com/cea-hpc/sshproxy
cves:
- CVE-2024-34713
ghsas:
- GHSA-jmqp-37m5-49wh
references:
- advisory: https://github.com/cea-hpc/sshproxy/security/advisories/GHSA-jmqp-37m5-49wh
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2024-34713
- fix: https://github.com/cea-hpc/sshproxy/commit/3b8bccc874dc4ca2c80c956cad65722abb46f0b9
- fix: https://github.com/cea-hpc/sshproxy/commit/f7eabd05d5f0f951e160293692327cad9a7d9580
source:
id: GHSA-jmqp-37m5-49wh
created: 2024-05-17T16:09:33.514363-04:00
review_status: UNREVIEWED