PublicDate: 2008-01-25 00:00:00 UTC Candidate: CVE-2007-6415 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6415 Description: scponly 4.6 and earlier allows remote authenticated users to bypass intended restrictions and execute arbitrary code by invoking scp, as implemented by OpenSSH, with the -F and -o options. Ubuntu-Description: Notes: jdstrand> debdiff in bug needs more information Bugs: https://bugs.edge.launchpad.net/ubuntu/+source/scponly/+bug/249593 Priority: high Discovered-by: Assigned-to: CVSS: Patches_scponly: upstream_scponly: released (4.6-1.2) dapper_scponly: released (4.6-1etch1build0.6.06.1) edgy_scponly: needed (reached end-of-life) feisty_scponly: needed (reached end-of-life) gutsy_scponly: needed (reached end-of-life) hardy_scponly: released (4.6-1.2) intrepid_scponly: released (4.6-1.2) jaunty_scponly: released (4.6-1.2) devel_scponly: released (4.6-1.2)