/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2023-6004

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2023-6004

Severity

4.8

Medium

CVSS V3

Description

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

References

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing