Information disclosure in Dropbear - CVE-2017-9079
Published: September 21, 2018
Vulnerability identifier: #VU14821
CSH Severity: Low
CVSS v4: 4.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:L/SI:N/SA:N]
CVE-ID: CVE-2017-9079
CWE-ID: CWE-200
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a local user to gain access to potentially sensitive information.
The vulnerability exists due to the application allows usage of symlinks when configured with authorized_keys file format and a command= option. A local user can read certain files on the system with root privileges.
Affected software
Dropbear
Fedora
dropbear (Alpine package)
dropbear (Debian package)
dropbear
Fedora
dropbear (Alpine package)
dropbear (Debian package)
dropbear
How to mitigate CVE-2017-9079
Install updates from vendor's website.
Dropbear - update to 2017.75
dropbear (Alpine package) - update to 2017.75-r0
dropbear (Debian package) - update to 2014.65-1+deb8u2
dropbear - addressed in versions 2017.75-1.el6, 2017.75-1.el7, 2017.75-1.fc24, 2017.75-1.fc25, 2017.75-1.fc26
dropbear (Alpine package) - update to 2017.75-r0
dropbear (Debian package) - update to 2014.65-1+deb8u2
dropbear - addressed in versions 2017.75-1.el6, 2017.75-1.el7, 2017.75-1.fc24, 2017.75-1.fc25, 2017.75-1.fc26