Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-29652

Опубликовано: 16 дек. 2020
Источник: redhat
CVSS3: 7.5

Описание

A nil pointer dereference in the golang.org/x/crypto/ssh component through v0.0.0-20201203163018-be400aefbc4c for Go allows remote attackers to cause a denial of service against SSH servers.

A null pointer dereference vulnerability was found in golang. When using the library's ssh server without specifying an option for GSSAPIWithMICConfig, it is possible for an attacker to craft an ssh client connection using the gssapi-with-mic authentication method and cause the server to panic resulting in a denial of service. The highest threat from this vulnerability is to system availability.

Отчет

A large number of products include the affected package, but do not make use of the vulnerable SSH server code. Accordingly, the flaw itself is rated as "Important", but these products themselves all have a "Low" severity rating. Additionally, a number of products include golang.org/x/crypto (or even golang.org/x/crypto/ssh/terminal) but not specifically golang.org/x/crypto/ssh/server.go in the final build. As this would result in a very large number of entries of not affected products, only products which include the ssh server code (golang.org/x/crypto/ssh/server.go) have been represented here.
Red Hat Enterprise Linux 8 container-tools:rhel8/containernetworking-plugins is not affected because although it uses some functionality from golang.org/x/crypto, it does not use or import anything from golang.org/x/crypto/ssh/*.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
OpenShift Service Mesh 2.03scale-istio-adapter-rhel8-containerWill not fix
OpenShift Service Mesh 2.0servicemeshWill not fix
OpenShift Service Mesh 2.0servicemesh-cniWill not fix
Red Hat Advanced Cluster Management for Kubernetes 2rhacm2/multicluster-operators-subscription-release-rhel8Affected
Red Hat Advanced Cluster Management for Kubernetes 2rhacm2/multicluster-operators-subscription-rhel8Affected
Red Hat Enterprise Linux 7gomtreeOut of support scope
Red Hat Fuse 7crypto/sshFix deferred
Red Hat OpenShift Container Platform 3.11atomic-openshiftFix deferred
Red Hat OpenShift Container Platform 3.11atomic-openshift-cluster-autoscalerFix deferred
Red Hat OpenShift Container Platform 3.11atomic-openshift-deschedulerFix deferred

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=1908883golang: crypto/ssh: crafted authentication request can lead to nil pointer dereference

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 4 лет назад

A nil pointer dereference in the golang.org/x/crypto/ssh component through v0.0.0-20201203163018-be400aefbc4c for Go allows remote attackers to cause a denial of service against SSH servers.

CVSS3: 7.5
nvd
больше 4 лет назад

A nil pointer dereference in the golang.org/x/crypto/ssh component through v0.0.0-20201203163018-be400aefbc4c for Go allows remote attackers to cause a denial of service against SSH servers.

CVSS3: 7.5
debian
больше 4 лет назад

A nil pointer dereference in the golang.org/x/crypto/ssh component thr ...

CVSS3: 7.5
github
около 3 лет назад

golang.org/x/crypto/ssh NULL Pointer Dereference vulnerability

CVSS3: 7.5
fstec
больше 4 лет назад

Уязвимость компонента golang.org/x/crypto/ssh библиотеки для языка программирования Go crypto, позволяющая нарушителю вызывать отказ в обслуживании SSH-серверов

7.5 High

CVSS3