libssh Null Pointer Dereference Error Vulnerability
Last Update Date:
7 Feb 2013 10:42
Release Date:
7 Feb 2013
5126
Views
RISK: Medium Risk
TYPE: Security software and application - Security Software & Appliance
A vulnerability has been identified in libssh, which is vulnerable to a denial of service, caused by a NULL pointer dereference error when processing "Client: Diffie-Hellman Key Exchange Init" packet. A remote attacker could exploit this vulnerability to cause the application to crash.
Impact
- Denial of Service
System / Technologies affected
- libssh 0.5.3
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Upgrade to the latest version of libssh (0.5.4 or later):
http://www.libssh.org/2013/01/22/libssh-0-5-4-security-release/
Vulnerability Identifier
Source
Related Link
Share with