Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-8132

Опубликовано: 29 дек. 2014
Источник: debian
EPSS Низкий

Описание

Double free vulnerability in the ssh_packet_kexinit function in kex.c in libssh 0.5.x and 0.6.x before 0.6.4 allows remote attackers to cause a denial of service via a crafted kexinit packet.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libsshfixed0.6.3-4package
libsshfixed0.5.4-1+deb7u3wheezypackage
libsshnot-affectedsqueezepackage

Примечания

  • http://www.libssh.org/2014/12/19/libssh-0-6-4-security-and-bugfix-release/

  • Upstream patch: http://git.libssh.org/projects/libssh.git/commit/?id=c2aed4ca78030d9014a890cb4370e6dc8264823f

EPSS

Процентиль: 87%
0.03289
Низкий

Связанные уязвимости

ubuntu
около 11 лет назад

Double free vulnerability in the ssh_packet_kexinit function in kex.c in libssh 0.5.x and 0.6.x before 0.6.4 allows remote attackers to cause a denial of service via a crafted kexinit packet.

nvd
около 11 лет назад

Double free vulnerability in the ssh_packet_kexinit function in kex.c in libssh 0.5.x and 0.6.x before 0.6.4 allows remote attackers to cause a denial of service via a crafted kexinit packet.

github
больше 3 лет назад

Double free vulnerability in the ssh_packet_kexinit function in kex.c in libssh 0.5.x and 0.6.x before 0.6.4 allows remote attackers to cause a denial of service via a crafted kexinit packet.

EPSS

Процентиль: 87%
0.03289
Низкий