Btrbk · Btrbk · CVE-2021-38173
Name of the Vulnerable Software and Affected Versions:
Btrbk versions prior to 0.31.2
Description:
The issue allows command execution due to the mishandling of remote hosts filtering SSH commands using `ssh filter btrbk.sh` in authorized keys.
Recommendations:
For versions prior to 0.31.2, update to version 0.31.2 or later to resolve the issue. As a temporary workaround, consider restricting access to the `ssh filter btrbk.sh` script in authorized keys until the update is applied.