Логотип exploitDog
bind:"CVE-2023-6918" OR bind:"CVE-2023-6004"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-6918" OR bind:"CVE-2023-6004"

Количество 22

Количество 22

rocky логотип

RLSA-2024:3233

почти 2 года назад

Low: libssh security update

EPSS: Низкий
rocky логотип

RLSA-2024:2504

11 месяцев назад

Low: libssh security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-3233

почти 2 года назад

ELSA-2024-3233: libssh security update (LOW)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-2504

почти 2 года назад

ELSA-2024-2504: libssh security update (LOW)

EPSS: Низкий
redos логотип

ROS-20240328-06

почти 2 года назад

Множественные уязвимости libssh

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0140-1

около 2 лет назад

Security update for libssh

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0539-1

около 2 лет назад

Security update for libssh

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0525-1

около 2 лет назад

Security update for libssh

EPSS: Низкий
ubuntu логотип

CVE-2023-6918

больше 2 лет назад

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
EPSS: Низкий
redhat логотип

CVE-2023-6918

больше 2 лет назад

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2023-6918

больше 2 лет назад

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
EPSS: Низкий
msrc логотип

CVE-2023-6918

больше 2 лет назад

Libssh: missing checks for return values for digests

CVSS3: 3.7
EPSS: Низкий
debian логотип

CVE-2023-6918

больше 2 лет назад

A flaw was found in the libssh implements abstract layer for message d ...

CVSS3: 3.7
EPSS: Низкий
ubuntu логотип

CVE-2023-6004

около 2 лет назад

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 4.8
EPSS: Низкий
redhat логотип

CVE-2023-6004

больше 2 лет назад

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2023-6004

около 2 лет назад

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 4.8
EPSS: Низкий
msrc логотип

CVE-2023-6004

около 1 года назад

Libssh: proxycommand/proxyjump features allow injection of malicious code through hostname

CVSS3: 4.8
EPSS: Низкий
debian логотип

CVE-2023-6004

около 2 лет назад

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump ...

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-gpcj-wh2f-rr23

больше 2 лет назад

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-f35j-mfvw-p857

около 2 лет назад

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 3.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2024:3233

Low: libssh security update

почти 2 года назад
rocky логотип
RLSA-2024:2504

Low: libssh security update

11 месяцев назад
oracle-oval логотип
ELSA-2024-3233

ELSA-2024-3233: libssh security update (LOW)

почти 2 года назад
oracle-oval логотип
ELSA-2024-2504

ELSA-2024-2504: libssh security update (LOW)

почти 2 года назад
redos логотип
ROS-20240328-06

Множественные уязвимости libssh

CVSS3: 5.3
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:0140-1

Security update for libssh

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:0539-1

Security update for libssh

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:0525-1

Security update for libssh

около 2 лет назад
ubuntu логотип
CVE-2023-6918

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
0%
Низкий
больше 2 лет назад
redhat логотип
CVE-2023-6918

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-6918

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
0%
Низкий
больше 2 лет назад
msrc логотип
CVE-2023-6918

Libssh: missing checks for return values for digests

CVSS3: 3.7
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-6918

A flaw was found in the libssh implements abstract layer for message d ...

CVSS3: 3.7
0%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2023-6004

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 4.8
0%
Низкий
около 2 лет назад
redhat логотип
CVE-2023-6004

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 4.8
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-6004

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 4.8
0%
Низкий
около 2 лет назад
msrc логотип
CVE-2023-6004

Libssh: proxycommand/proxyjump features allow injection of malicious code through hostname

CVSS3: 4.8
0%
Низкий
около 1 года назад
debian логотип
CVE-2023-6004

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump ...

CVSS3: 4.8
0%
Низкий
около 2 лет назад
github логотип
GHSA-gpcj-wh2f-rr23

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
0%
Низкий
больше 2 лет назад
github логотип
GHSA-f35j-mfvw-p857

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 3.9
0%
Низкий
около 2 лет назад

Уязвимостей на страницу