In libssh2 v1.9.0 and previous versions versions, the SSH_MSG_DISCONNECT logic in packet.c has an integer overflow in a bounds check, enabling an malicious user to specify an arbitrary (out-of-bounds) offset for a subsequent memory read. A crafted SSH server may be able to disclose sensitive information or cause a denial of service condition on the client system when a user connects to the server.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
libssh2 libssh2 |
||
fedoraproject fedora 30 |
||
fedoraproject fedora 31 |
||
opensuse leap 15.1 |
||
debian debian linux 8.0 |
||
debian debian linux 9.0 |
||
netapp element software - |
||
netapp ontap select deploy administration utility - |
||
netapp solidfire - |
||
netapp hci management node - |
||
netapp active iq unified manager - |
||
netapp bootstrap_os - |