Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Mageia 9 MGASA-2023-0357 critical: libssh Terrapin Attack fix

mageia
Calendar Grey December 29, 2023
Dist Mageia Esm H88
The recent update for Mageia 9's libssh resolves critical security flaws, specifically tackling the Terrapin Exploit, which was published on December 29, 2023.
New version 0.10.6 for fixing security vulnerabilities of CVE-2023-6004, CVE-2023-48795 [Prefix Truncation Attacks in SSH Specification (Terrapin Attack)] and CVE-2023-6918

Summary

New version 0.10.6 for fixing security vulnerabilities of CVE-2023-6004, CVE-2023-48795 [Prefix Truncation Attacks in SSH Specification (Terrapin Attack)] and CVE-2023-6918.

References

- https://bugs.mageia.org/show_bug.cgi?id=32660

- - https://www.cve.org/CVERecord?id=CVE-2023-6004

- https://www.cve.org/CVERecord?id=CVE-2023-6918

- https://www.cve.org/CVERecord?id=CVE-2023-48795

Resolution

SRPMS

- 9/core/libssh-0.10.6-1.mga9

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 29 Dec 2023
URL: https://advisories.mageia.org/MGASA-2023-0357.html
Type: security
CVE: CVE-2023-6004, CVE-2023-6918, CVE-2023-48795

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here