Description
Paramiko Authentication Bypass vulnerability
Paramiko version 2.4.1, 2.3.2, 2.2.3, 2.1.5, 2.0.8, 1.18.5, 1.17.6 contains a Incorrect Access Control vulnerability in SSH server that can result in RCE. This attack appear to be exploitable via network connectivity.
Mitigation
Minimal update. May introduce new vulnerabilities or breaking changes.
|
 debian 13 | | | 2.4.2-0.1 |
 alpine v3.12 | | =1.10.1-r0 || =1.11.0-r0 || =1.12.0-r0 || =1.14.0-r0 || =1.14.1-r0 || =1.15.1-r0 || =1.15.2-r0 || =1.16.0-r0 || =1.7.7.1-r0 || =1.9.0-r0 || =2.0.1-r1 || =2.0.1-r2 || =2.0.2-r0 || =2.0.2-r1 || =2.0.2-r2 || =2.0.2-r3 || =2.1.2-r0 || =2.2.0-r0 || =2.2.1-r0 || =2.2.1-r1 || =2.3.1-r0 || =2.4.0-r0 || =2.4.1-r0 || >=0 <2.4.2-r0 | 2.4.2-r0 |
 alpine v3.14 | | =1.10.1-r0 || =1.11.0-r0 || =1.12.0-r0 || =1.14.0-r0 || =1.14.1-r0 || =1.15.1-r0 || =1.15.2-r0 || =1.16.0-r0 || =1.7.7.1-r0 || =1.9.0-r0 || =2.0.1-r1 || =2.0.1-r2 || =2.0.2-r0 || =2.0.2-r1 || =2.0.2-r2 || =2.0.2-r3 || =2.1.2-r0 || =2.2.0-r0 || =2.2.1-r0 || =2.2.1-r1 || =2.3.1-r0 || =2.4.0-r0 || =2.4.1-r0 || >=0 <2.4.2-r0 | 2.4.2-r0 |
 pypi | | >=2.4.0 <2.4.2 || >=2.3.0 <2.3.3 || >=2.2.0 <2.2.4 || >=2.1.0 <2.1.6 || >=1.5.1 <2.0.9 | 2.4.2, 2.3.3, 2.2.4, 2.1.6, 2.0.9 |
 alpine v3.7 | | =1.10.1-r0 || =1.11.0-r0 || =1.12.0-r0 || =1.14.0-r0 || =1.14.1-r0 || =1.15.1-r0 || =1.15.2-r0 || =1.16.0-r0 || =1.7.7.1-r0 || =1.9.0-r0 || =2.0.1-r1 || =2.0.1-r2 || =2.0.2-r0 || =2.0.2-r1 || =2.0.2-r2 || =2.0.2-r3 || =2.1.2-r0 || =2.2.0-r0 || =2.2.1-r0 || =2.2.1-r1 || =2.3.1-r0 || =2.4.0-r0 || >=0 <2.4.2-r0 | 2.4.2-r0 |
 alpine v3.8 | | =1.10.1-r0 || =1.11.0-r0 || =1.12.0-r0 || =1.14.0-r0 || =1.14.1-r0 || =1.15.1-r0 || =1.15.2-r0 || =1.16.0-r0 || =1.7.7.1-r0 || =1.9.0-r0 || =2.0.1-r1 || =2.0.1-r2 || =2.0.2-r0 || =2.0.2-r1 || =2.0.2-r2 || =2.0.2-r3 || =2.1.2-r0 || =2.2.0-r0 || =2.2.1-r0 || =2.2.1-r1 || =2.3.1-r0 || =2.4.0-r0 || =2.4.1-r0 || >=0 <2.4.2-r0 | 2.4.2-r0 |
 alpine v3.11 | | =1.10.1-r0 || =1.11.0-r0 || =1.12.0-r0 || =1.14.0-r0 || =1.14.1-r0 || =1.15.1-r0 || =1.15.2-r0 || =1.16.0-r0 || =1.7.7.1-r0 || =1.9.0-r0 || =2.0.1-r1 || =2.0.1-r2 || =2.0.2-r0 || =2.0.2-r1 || =2.0.2-r2 || =2.0.2-r3 || =2.1.2-r0 || =2.2.0-r0 || =2.2.1-r0 || =2.2.1-r1 || =2.3.1-r0 || =2.4.0-r0 || =2.4.1-r0 || >=0 <2.4.2-r0 | 2.4.2-r0 |
 alpine v3.13 | | =1.10.1-r0 || =1.11.0-r0 || =1.12.0-r0 || =1.14.0-r0 || =1.14.1-r0 || =1.15.1-r0 || =1.15.2-r0 || =1.16.0-r0 || =1.7.7.1-r0 || =1.9.0-r0 || =2.0.1-r1 || =2.0.1-r2 || =2.0.2-r0 || =2.0.2-r1 || =2.0.2-r2 || =2.0.2-r3 || =2.1.2-r0 || =2.2.0-r0 || =2.2.1-r0 || =2.2.1-r1 || =2.3.1-r0 || =2.4.0-r0 || =2.4.1-r0 || >=0 <2.4.2-r0 | 2.4.2-r0 |
 debian 12 | | | 2.4.2-0.1 |
 debian 14 | | | 2.4.2-0.1 |