CVE-2017-1000116
CRITICAL
9.8
CVSS Severity Score
Vulnerability Description
Mercurial prior to 4.3 did not adequately sanitize hostnames passed to ssh, leading to possible shell-injection attacks.
Affected Platforms (CPE)
📦
Mercurial
Mercurial
< 4.3💻
Debian
Debian Linux
= 8.0💻
Debian
Debian Linux
= 9.0💻
Redhat
Enterprise Linux Desktop
= 7.0💻
Redhat
Enterprise Linux Server
= 7.0💻
Redhat
Enterprise Linux Server Aus
= 7.4💻
Redhat
Enterprise Linux Server Aus
= 7.6💻
Redhat
Enterprise Linux Server Eus
= 7.4💻
Redhat
Enterprise Linux Server Eus
= 7.5💻
Redhat
Enterprise Linux Server Eus
= 7.6💻
Redhat
Enterprise Linux Server Tus
= 7.4💻
Redhat
Enterprise Linux Server Tus
= 7.6💻
Redhat
