Updated libssh packages fix security vulnerability: A malicious client or server could crash the counterpart implemented with libssh AES-CTR ciphers are used and don't get fully...
Updated libssh packages fix security vulnerability:
A malicious client or server could crash the counterpart implemented
with libssh AES-CTR ciphers are used and don't get fully initialized.
It will crash when it tries to cleanup the AES-CTR ciphers when
closing the connection (CVE-2020-1730).
- https://bugs.mageia.org/show_bug.cgi?id=26462
- - https://www.cve.org/CVERecord?id=CVE-2020-1730
- 7/core/libssh-0.8.9-1.mga7
Get the latest Linux and open source security news straight to your inbox.