ECHO-701c-0998-5cef

See a problem?
Import Source
https://advisory.echohq.com/osv/ECHO-701c-0998-5cef.json
JSON Data
https://api.test.osv.dev/v1/vulns/ECHO-701c-0998-5cef
Upstream
  • GHSA-mv2j-4mm8-9xgv
Withdrawn
2025-08-03T16:59:07Z
Published
2025-08-29T01:37:12Z
Modified
2026-09-15T00:57:37Z
Summary
This vulnerability is disputed by the openssh maintainers, and is considered expected behavior. As long as scp is used within trusted servers, this vulnerability should not affect the image. https://security-tracker.debian.org/tracker/CVE-2019-6110 https://lists.mindrot.org/pipermail/openssh-unix-dev/2019-January/037475.html
Details
References

Affected packages

Echo / openssh

Package

Name
openssh
Purl
pkg:deb/echo/openssh

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
1:9.2p1-2+deb12u6

Database specific

source
"https://advisory.echohq.com/osv/ECHO-701c-0998-5cef.json"