/
DirectorySecurity Advisories
Sign In
Security Advisories

CVE-2023-6004

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2023-6004

CGA ID

CGA-xrcg-fx33-xw78

Severity

4.8

Medium

CVSS V3

Description

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

References

Affected packages


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Products

Chainguard ContainersChainguard LibrariesChainguard VMs