« List of all CVEs

CVE-2013-0176

Published: 2/5/2013 Last updated: 8/6/2024 Reserved: 12/6/2012

The publickey_from_privatekey function in libssh before 0.5.4, when no algorithm is matched during negotiations, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a "Client: Diffie-Hellman Key Exchange Init" packet.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Opam packages affected (1)

libssh

Products affected (1)

Product Vendor Version
n/a n/a < a4639380bbe66172df329f8b54aa7d2e943f0f64

References (12)