Lucene search

K
githubGitHub Advisory DatabaseGHSA-GWC9-M7RH-J2WW
HistorySep 07, 2022 - 12:01 a.m.

x/crypto/ssh vulnerable to panic via malformed packets

2022-09-0700:01:52
GitHub Advisory Database
github.com
20
vulnerability
panic
malformed packets
unauthenticated attacker
aes-gcm
chacha20poly1305
ssh server

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

0.001 Low

EPSS

Percentile

36.2%

The x/crypto/ssh package before 0.0.0-20211202192323-5770296d904e of golang.org/x/crypto allows an unauthenticated attacker to panic an SSH server. When using AES-GCM or ChaCha20Poly1305, consuming a malformed packet which contains an empty plaintext causes a panic.

Affected configurations

Vulners
Node
fedoraprojectcrypto-utilsRange<0.0.0+20211202192323+5770296d904e

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

0.001 Low

EPSS

Percentile

36.2%