MGASA-2015-0014

Source
https://advisories.mageia.org/MGASA-2015-0014.html
Import Source
https://advisories.mageia.org/MGASA-2015-0014.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2015-0014
Related
Published
2015-01-08T12:36:22Z
Modified
2015-01-08T12:29:17Z
Summary
Updated libssh packages fix CVE-2014-8132
Details

Updated libssh packages fix security vulnerability:

Double free vulnerability in the sshpacketkexinit function in kex.c in libssh 0.5.x and 0.6.x before 0.6.4 allows remote attackers to cause a denial of service via a crafted kexinit packet (CVE-2014-8132).

References
Credits

Affected packages

Mageia:4 / libssh

Package

Name
libssh
Purl
pkg:rpm/mageia/libssh?distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.5.5-2.2.mga4

Ecosystem specific

{
    "section": "core"
}