CVE-2024-41254 Information
Aug 01, 2024
cve
Description
An issue was discovered in litestream v0.3.13. The usage of the ssh.InsecureIgnoreHostKey() disables host key verification possibly allowing attackers to obtain sensitive information via a man-in-the-middle attack.
Reference
https://gist.github.com/nyxfqq/d857f268a53aa62402655c8dcd95c68f
Share on: