QID 198717

Date Published: 2022-03-29

QID 198717: Ubuntu Security Notification for Paramiko Vulnerability (USN-5351-1)

Paramiko incorrectly handled permissions whenwriting private key files.

A local attacker could possibly use this issueto gain access to private keys.

  • CVSS V3 rated as Medium - 5.9 severity.
  • CVSS V2 rated as Medium - 4.3 severity.
  • Solution
    Refer to Ubuntu security advisory USN-5351-1 for updates and patch information.
    Vendor References

    CVEs related to QID 198717

    Software Advisories
    Advisory ID Software Component Link
    USN-5351-1 Ubuntu Linux URL Logo ubuntu.com/security/notices/USN-5351-1