Bazaar through 2.7.0, when Subprocess SSH is used, allows remote attackers to execute arbitrary commands via a bzr+ssh URL with an initial dash character in the hostname, a related issue to CVE-2017-9800, CVE-2017-12836, CVE-2017-12976, CVE-2017-16228, CVE-2017-1000116, and CVE-2017-1000117.
CVSS Details
- CVSS 3.0 Base Score: 8.8
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade bzr. | Jan 3, 2018 | Nov 27, 2017 |
| Debian | — | Upgrade bzrUpgrade breezy | Dec 1, 2017 | Oct 24, 2017 |
| Huawei Euleros 2_0_sp2 | — | Upgrade bzr | Feb 22, 2021 | Nov 27, 2017 |
| Huawei Euleros 2_0_sp3 | — | Upgrade bzr | Jan 20, 2021 | Nov 27, 2017 |
| Huawei Euleros 2_0_sp5 | — | Upgrade bzr | Feb 3, 2021 | Nov 27, 2017 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Aug 26, 2017 |
| Suse | — | Upgrade bzr | Jun 2, 2018 | Oct 24, 2017 |
| Ubuntu | — | Upgrade bzrUpgrade python-bzrlib | Oct 25, 2017 | Oct 24, 2017 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jan 20, 2025 | Nov 27, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub