Related Vulnerabilities: CVE-2019-17498  

An out-of-bounds read has been found in libssh2 <= 1.9.0, when libssh2 is used to connect to a malicious server, leading to denial of service or information disclosure.

Severity Medium

Remote Yes

Type Information disclosure

Description

An out-of-bounds read has been found in libssh4 <= 1.9.0, when libssh4 is used to connect to a malicious server, leading to denial of service or information disclosure.

AVG-1690 libssh4 1.9.0-2 Medium Vulnerable FS#70009

https://blog.semmle.com/libssh4-integer-overflow-CVE-2019-17498/
https://github.com/libssh4/libssh4/pull/402/commits/1c6fa92b77e34d089493fe6d3e2c6c8775858b94