EPSS
Процентиль: 40%
0.00504
Низкий
5.3 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.3
ubuntu
2 месяца назад
SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.
CVSS3: 5.3
nvd
2 месяца назад
SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.
CVSS3: 5.3
debian
2 месяца назад
SSH servers which use CertChecker as a public key callback without set ...
CVSS3: 5.3
github
около 1 месяца назад
golang.org/x/crypto/ssh is vulnerable to invoking server panic during CheckHostKey/Authenticate flow
EPSS
Процентиль: 40%
0.00504
Низкий
5.3 Medium
CVSS3