Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4h7v-2vgp-qh2w

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Multiple SSH2 servers and clients do not properly handle strings with null characters in them when the string length is specified by a length field, which could allow remote attackers to cause a denial of service or possibly execute arbitrary code due to interactions with the use of null-terminated strings as implemented using languages such as C, as demonstrated by the SSHredder SSH protocol test suite.

Multiple SSH2 servers and clients do not properly handle strings with null characters in them when the string length is specified by a length field, which could allow remote attackers to cause a denial of service or possibly execute arbitrary code due to interactions with the use of null-terminated strings as implemented using languages such as C, as demonstrated by the SSHredder SSH protocol test suite.

EPSS

Процентиль: 88%
0.04154
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
больше 22 лет назад

Multiple SSH2 servers and clients do not properly handle strings with null characters in them when the string length is specified by a length field, which could allow remote attackers to cause a denial of service or possibly execute arbitrary code due to interactions with the use of null-terminated strings as implemented using languages such as C, as demonstrated by the SSHredder SSH protocol test suite.

debian
больше 22 лет назад

Multiple SSH2 servers and clients do not properly handle strings with ...

EPSS

Процентиль: 88%
0.04154
Низкий

Дефекты

CWE-20