Instructions to address openssh vlunerability
search cancel

Instructions to address openssh vlunerability

book

Article ID: 375943

calendar_today

Updated On:

Products

VMware Integrated OpenStack

Issue/Introduction

A security scan against the management plane vm's returns any of these CVE's:

  • CVE-2018-20685
  • CVE-2019-6111
  • CVE-2019-6109
  • CVE-2019-6110
  • CVE-2023-51385

Environment

7.3

Cause

Photon has issued the following security Advisories:

PHSA-2019-3.0-0003  CVE-2018-20685
PHSA-2019-3.0-0014  CVE-2019-6109, CVE-2019-6111
PHSA-2019-3.0-0017  CVE-2019-6110
PHSA-2023-3.0-0705 CVE-2023-51385

Resolution

These issues with openssh will be addressed openssh-7.8p1-18

  1. Determine the version of the package that is installed:
    rpm -qa openssh
  2. If the package returned is less than openssh-7.8p1-18:
    tdnf update openssh