Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Debian LTS DLA-2848-1 Critical: Libssh2 SSH Client Security Issues

debian lts
Calendar Grey December 17, 2021
Dist Debian Esm H88
Recent security bulletin on OpenSSH for Ubuntu LTS discloses two severe buffer overflow vulnerabilities affecting SSH server interactions.
Two issues have been discovered in libssh2, a client-side C library implementing the SSH2 protocol: CVE-2019-13115:

Summary

CVE-2019-13115:
kex_method_diffie_hellman_group_exchange_sha256_key_exchange in kex.c has
an integer overflow that could lead to an out-of-bounds read in the way
packets are read from the server. A remote attacker who compromises a
SSH server may be able to disclose sensitive information or cause a denial
of service condition on the client system when a user connects to the server.

CVE-2019-17498:
SSH_MSG_DISCONNECT logic in packet.c has an integer overflow in a bounds check,
enabling an attacker to specify an arbitrary (out-of-bounds) offset for a
subsequent memory read. A crafted SSH server may be able to disclose sensitive
information or cause a denial of service condition on the client system when
a user connects to the server.

For Debian 9 stretch, these problems have been fixed in version
1.7.0-1+deb9u2.

We recommend that you upgrade your libssh2 packages.

For the detailed security status of libssh2 please refer to
its security tracker page at:

Read the Full Advisory


Severity
critical
Lowest
Low
Medium
High
Critical

Package: libssh2
Version: 1.7.0-1+deb9u2
CVE ID: CVE-2019-13115 CVE-2019-17498

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here