The kex_agree_methods function in libssh2 before 1.5.0 allows remote servers to cause a denial of service (crash) or have other unspecified impact via crafted length values in an SSH_MSG_KEXINIT packet.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
No history.
Information
Published : 2015-03-13 14:59
Updated : 2025-04-12 10:46
NVD link : CVE-2015-1782
Mitre link : CVE-2015-1782
CVE.ORG link : CVE-2015-1782
JSON object : View
Products Affected
libssh2
- libssh2
debian
- debian_linux
fedoraproject
- fedora
CWE
CWE-20
Improper Input Validation