Double free vulnerability in the ssh_packet_kexinit function in kex.c in libssh 0.5.x and 0.6.x before 0.6.4 allows remote attackers to cause a denial of service via a crafted kexinit packet.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libssh | Libssh | 0.5.0 (including) | 0.5.0 (including) |
Libssh | Libssh | 0.5.2 (including) | 0.5.2 (including) |
Libssh | Libssh | 0.5.3 (including) | 0.5.3 (including) |
Libssh | Libssh | 0.5.4 (including) | 0.5.4 (including) |
Libssh | Libssh | 0.5.5 (including) | 0.5.5 (including) |
Libssh | Libssh | 0.6.0 (including) | 0.6.0 (including) |
Libssh | Libssh | 0.6.1 (including) | 0.6.1 (including) |
Libssh | Libssh | 0.6.2 (including) | 0.6.2 (including) |
Libssh | Libssh | 0.6.3 (including) | 0.6.3 (including) |
Libssh | Ubuntu | devel | * |
Libssh | Ubuntu | lucid | * |
Libssh | Ubuntu | precise | * |
Libssh | Ubuntu | trusty | * |
Libssh | Ubuntu | upstream | * |
Libssh | Ubuntu | utopic | * |