[RHBA-2024:1127] libssh bug fix update

Severity Moderate
Affected Packages 11
CVEs 1

libssh is a library which implements the SSH protocol. It can be used to implement client and server applications.

Bug Fix(es):

  • libssh: ssh: Prefix truncation attack on Binary Packet Protocol (BPP) (JIRA:RHEL-20939)
ID
RHBA-2024:1127
Severity
moderate
URL
https://access.redhat.com/errata/RHBA-2024:1127
Published
2024-03-05T00:00:00
(6 months ago)
Modified
2024-03-05T00:00:00
(6 months ago)
Rights
Copyright 2024 Red Hat, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/redhat/libssh?arch=x86_64&distro=redhat-9.3 redhat libssh < 0.10.4-12.el9_3 redhat-9.3 x86_64
Affected pkg:rpm/redhat/libssh?arch=s390x&distro=redhat-9.3 redhat libssh < 0.10.4-12.el9_3 redhat-9.3 s390x
Affected pkg:rpm/redhat/libssh?arch=ppc64le&distro=redhat-9.3 redhat libssh < 0.10.4-12.el9_3 redhat-9.3 ppc64le
Affected pkg:rpm/redhat/libssh?arch=i686&distro=redhat-9.3 redhat libssh < 0.10.4-12.el9_3 redhat-9.3 i686
Affected pkg:rpm/redhat/libssh?arch=aarch64&distro=redhat-9.3 redhat libssh < 0.10.4-12.el9_3 redhat-9.3 aarch64
Affected pkg:rpm/redhat/libssh-devel?arch=x86_64&distro=redhat-9.3 redhat libssh-devel < 0.10.4-12.el9_3 redhat-9.3 x86_64
Affected pkg:rpm/redhat/libssh-devel?arch=s390x&distro=redhat-9.3 redhat libssh-devel < 0.10.4-12.el9_3 redhat-9.3 s390x
Affected pkg:rpm/redhat/libssh-devel?arch=ppc64le&distro=redhat-9.3 redhat libssh-devel < 0.10.4-12.el9_3 redhat-9.3 ppc64le
Affected pkg:rpm/redhat/libssh-devel?arch=i686&distro=redhat-9.3 redhat libssh-devel < 0.10.4-12.el9_3 redhat-9.3 i686
Affected pkg:rpm/redhat/libssh-devel?arch=aarch64&distro=redhat-9.3 redhat libssh-devel < 0.10.4-12.el9_3 redhat-9.3 aarch64
Affected pkg:rpm/redhat/libssh-config?distro=redhat-9.3 redhat libssh-config < 0.10.4-12.el9_3 redhat-9.3
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...