Логотип exploitDog
bind:"CVE-2023-6918" OR bind:"CVE-2023-6004"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-6918" OR bind:"CVE-2023-6004"

Количество 21

Количество 21

rocky логотип

RLSA-2024:3233

больше 1 года назад

Low: libssh security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-3233

больше 1 года назад

ELSA-2024-3233: libssh security update (LOW)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-2504

больше 1 года назад

ELSA-2024-2504: libssh security update (LOW)

EPSS: Низкий
redos логотип

ROS-20240328-06

больше 1 года назад

Множественные уязвимости libssh

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0140-1

почти 2 года назад

Security update for libssh

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0539-1

больше 1 года назад

Security update for libssh

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0525-1

больше 1 года назад

Security update for libssh

EPSS: Низкий
ubuntu логотип

CVE-2023-6918

почти 2 года назад

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
EPSS: Низкий
redhat логотип

CVE-2023-6918

почти 2 года назад

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2023-6918

почти 2 года назад

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
EPSS: Низкий
msrc логотип

CVE-2023-6918

почти 2 года назад

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-6918

почти 2 года назад

A flaw was found in the libssh implements abstract layer for message d ...

CVSS3: 3.7
EPSS: Низкий
ubuntu логотип

CVE-2023-6004

почти 2 года назад

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 4.8
EPSS: Низкий
redhat логотип

CVE-2023-6004

почти 2 года назад

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2023-6004

почти 2 года назад

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 4.8
EPSS: Низкий
msrc логотип

CVE-2023-6004

8 месяцев назад

CVSS3: 4.8
EPSS: Низкий
debian логотип

CVE-2023-6004

почти 2 года назад

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump ...

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-gpcj-wh2f-rr23

почти 2 года назад

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-f35j-mfvw-p857

почти 2 года назад

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 3.9
EPSS: Низкий
fstec логотип

BDU:2024-00200

почти 2 года назад

Уязвимость библиотеки libssh, связанная с разыменованием указателя NULL, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2024:3233

Low: libssh security update

больше 1 года назад
oracle-oval логотип
ELSA-2024-3233

ELSA-2024-3233: libssh security update (LOW)

больше 1 года назад
oracle-oval логотип
ELSA-2024-2504

ELSA-2024-2504: libssh security update (LOW)

больше 1 года назад
redos логотип
ROS-20240328-06

Множественные уязвимости libssh

CVSS3: 5.3
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0140-1

Security update for libssh

почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:0539-1

Security update for libssh

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0525-1

Security update for libssh

больше 1 года назад
ubuntu логотип
CVE-2023-6918

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
0%
Низкий
почти 2 года назад
redhat логотип
CVE-2023-6918

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
0%
Низкий
почти 2 года назад
nvd логотип
CVE-2023-6918

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
0%
Низкий
почти 2 года назад
msrc логотип
CVSS3: 5.3
0%
Низкий
почти 2 года назад
debian логотип
CVE-2023-6918

A flaw was found in the libssh implements abstract layer for message d ...

CVSS3: 3.7
0%
Низкий
почти 2 года назад
ubuntu логотип
CVE-2023-6004

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 4.8
0%
Низкий
почти 2 года назад
redhat логотип
CVE-2023-6004

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 4.8
0%
Низкий
почти 2 года назад
nvd логотип
CVE-2023-6004

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 4.8
0%
Низкий
почти 2 года назад
msrc логотип
CVSS3: 4.8
0%
Низкий
8 месяцев назад
debian логотип
CVE-2023-6004

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump ...

CVSS3: 4.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-gpcj-wh2f-rr23

A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

CVSS3: 3.7
0%
Низкий
почти 2 года назад
github логотип
GHSA-f35j-mfvw-p857

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

CVSS3: 3.9
0%
Низкий
почти 2 года назад
fstec логотип
BDU:2024-00200

Уязвимость библиотеки libssh, связанная с разыменованием указателя NULL, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
0%
Низкий
почти 2 года назад

Уязвимостей на страницу