checkbyssh in Nagios nagios-plugins 2.4.5 allows arbitrary command execution via ProxyCommand, LocalCommand, and PermitLocalCommand with \${IFS}. This has been categorized both as fixed in e8810de, and as intended behavior.
[
{
"deprecated": false,
"digest": {
"function_hash": "65435622679889613038174802112533940077",
"length": 4281.0
},
"target": {
"function": "process_arguments",
"file": "plugins/check_by_ssh.c"
},
"signature_type": "Function",
"source": "https://github.com/nagios-plugins/nagios-plugins/commit/e8810de21be80148562b7e0168b0a62aeedffde6",
"id": "CVE-2023-37154-96967795",
"signature_version": "v1"
},
{
"deprecated": false,
"digest": {
"line_hashes": [
"1764226779147952800252069985963470210",
"29510619766522554077519892227178996097",
"334559933293457597800218740066589645011",
"73330748222578045117660887084600810860",
"290319796360619242676652231027428424723",
"59832891395856060679566955438359375680"
],
"threshold": 0.9
},
"target": {
"file": "plugins/check_by_ssh.c"
},
"signature_type": "Line",
"source": "https://github.com/nagios-plugins/nagios-plugins/commit/e8810de21be80148562b7e0168b0a62aeedffde6",
"id": "CVE-2023-37154-f29e0e4a",
"signature_version": "v1"
}
]