Comment 1Huzaifa S. Sidhpurwala
2020-07-07 03:51:17 UTC
Red Hat does not consider this issue as a security flaw. As per upstream:
"Exploitation of this is not likely as utimes(2) does not fail under normal circumstances. Successful exploitation is not silent - the output of scp(1) would show transfer errors followed by the actualfile(s) that were received"
This CVE has been rejected by MITRE.
Comment 2Huzaifa S. Sidhpurwala
2020-07-07 03:51:22 UTC
Statement:
Red Hat does not consider this issue as a security flaw. As per upstream:
"Exploitation of this is not likely as utimes(2) does not fail under normal circumstances. Successful exploitation is not silent - the output of scp(1) would show transfer errors followed by the actualfile(s) that were received"
This CVE has been rejected by MITRE.