Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1728-1 | openssh security update |
Debian DSA |
DSA-4387-1 | openssh security update |
EUVD |
EUVD-2018-13232 | In OpenSSH 7.9, scp.c in the scp client allows remote SSH servers to bypass intended access restrictions via the filename of . or an empty filename. The impact is modifying the permissions of the target directory on the client side. |
Ubuntu USN |
USN-3885-1 | OpenSSH vulnerabilities |
Wed, 17 Dec 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-12-17T21:53:56.287Z
Reserved: 2019-01-10T00:00:00.000Z
Link: CVE-2018-20685
Updated: 2024-08-05T12:05:17.712Z
Status : Modified
Published: 2019-01-10T21:29:00.377
Modified: 2025-12-17T22:15:55.163
Link: CVE-2018-20685
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Ubuntu USN