Back to search
CVE-2014-8132
Published: Dec 29, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
Double free vulnerability in the ssh_packet_kexinit function in kex.c in libssh 0.5.x and 0.6.x before 0.6.4 allows remote attackers to cause a denial of service via a crafted kexinit packet.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://bugzilla.redhat.com/show_bug.cgi?id=1158089
x_refsource_CONFIRM
USN-2478-1
vendor-advisory
x_refsource_UBUNTU
GLSA-201606-12
vendor-advisory
x_refsource_GENTOO
FEDORA-2014-17324
vendor-advisory
x_refsource_FEDORA
DSA-3488
vendor-advisory
x_refsource_DEBIAN
FEDORA-2014-17303
vendor-advisory
x_refsource_FEDORA
http://www.libssh.org/2014/12/19/libssh-0-6-4-security-and-bugfix-release/
x_refsource_CONFIRM
http://advisories.mageia.org/MGASA-2015-0014.html
x_refsource_CONFIRM
60838
third-party-advisory
x_refsource_SECUNIA
MDVSA-2015:020
vendor-advisory
x_refsource_MANDRIVA
openSUSE-SU-2015:0017
vendor-advisory
x_refsource_SUSE
FEDORA-2014-17354
vendor-advisory
x_refsource_FEDORA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now