Source: libssh Version: 0.9.0-1 Severity: important Tags: security upstream Forwarded: https://bugs.libssh.org/T181 Control: found -1 0.8.7-1
Hi, The following vulnerability was published for libssh. CVE-2019-14889[0]: Unsanitized location in scp could lead to unwanted command execution If you fix the vulnerability please also make sure to include the CVE (Common Vulnerabilities & Exposures) id in your changelog entry. For further information see: [0] https://security-tracker.debian.org/tracker/CVE-2019-14889 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14889 [1] https://bugs.libssh.org/T181 [2] https://www.libssh.org/security/advisories/CVE-2019-14889.txt Please adjust the affected versions in the BTS as needed. Regards, Salvatore

