Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-18594

Опубликовано: 29 авг. 2019
Источник: debian

Описание

nse_libssh2.cc in Nmap 7.70 is subject to a denial of service condition due to a double free when an SSH connection fails, as demonstrated by a leading \n character to ssh-brute.nse or ssh-auth-methods.nse.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
nmapfixed7.80+dfsg1-1package

Примечания

  • https://github.com/nmap/nmap/commit/350bbe0597d37ad67abe5fef8fba984707b4e9ad

  • https://github.com/nmap/nmap/issues/1077

  • https://github.com/nmap/nmap/issues/1227

  • Crash in CLI tool, no security impact

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 7 лет назад

nse_libssh2.cc in Nmap 7.70 is subject to a denial of service condition due to a double free when an SSH connection fails, as demonstrated by a leading \n character to ssh-brute.nse or ssh-auth-methods.nse.

CVSS3: 4.3
redhat
около 7 лет назад

nse_libssh2.cc in Nmap 7.70 is subject to a denial of service condition due to a double free when an SSH connection fails, as demonstrated by a leading \n character to ssh-brute.nse or ssh-auth-methods.nse.

CVSS3: 7.5
nvd
почти 7 лет назад

nse_libssh2.cc in Nmap 7.70 is subject to a denial of service condition due to a double free when an SSH connection fails, as demonstrated by a leading \n character to ssh-brute.nse or ssh-auth-methods.nse.

CVSS3: 7.5
github
около 4 лет назад

nse_libssh2.cc in Nmap 7.70 is subject to a denial of service condition due to a double free when an SSH connection fails, as demonstrated by a leading \n character to ssh-brute.nse or ssh-auth-methods.nse.

suse-cvrf
почти 7 лет назад

Security update for nmap