Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple double free vulnerabilities in the (1) agent_sign_data function in agent.c, (2) channel_request function in channels.c, (3) ssh_userauth_pubkey function in auth.c, (4) sftp_parse_attr_3 function in sftp.c, and (5) try_publickey_from_file function in keyfiles.c in libssh before 0.5.3 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
libssh 多个双重释放漏洞
Vulnerability Description
libssh是一个用于访问SSH服务的C语言开发包,它能够执行远程命令、文件传输,同时为远程的程序提供安全的传输通道。 libssh 0.5.3之前版本中的keyfiles.c中的(1)agent.c中的agent_sign_data函数(2)channels.c中的channel_request函数(3)auth.c中的ssh_userauth_pubkey函数(4)sftp.c中的sftp_parse_attr_3函数以及(5)try_publickey_from_file函数中存在多个双重释放漏洞。
CVSS Information
N/A
Vulnerability Type
N/A