← Back to CVE List

CVE-2017-15906

Published: 2017-10-26T03:29Z
Last Modified: 2024-11-21T03:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The process_open function in sftp-server.c in OpenSSH before 7.6 does not properly prevent write operations in readonly mode, which allows attackers to create zero-length files. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt