Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The (1) publickey_make_dss, (2) publickey_make_rsa, (3) signature_from_string, (4) ssh_do_sign, and (5) ssh_sign_session_id functions in keys.c in libssh before 0.5.3 free "an invalid pointer on an error path," which might allow remote attackers to cause a denial of service (crash) via unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
libssh 多个拒绝服务漏洞
Vulnerability Description
libssh是一个用于访问SSH服务的C语言开发包,它能够执行远程命令、文件传输,同时为远程的程序提供安全的传输通道。 libssh 0.5.3之前版本中的keys.c中的‘(1)publickey_make_dss(2)publickey_make_rsa(3)signature_from_string(4)ssh_do_sign(5)ssh_sign_session_id’函数中存在漏洞,该漏洞源于释放‘无效的指针在错误的路径’。远程攻击者利用该漏洞通过未明向量导致拒绝服务(崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A