Lucene search

K
osvGoogleOSV:RLSA-2021:4387
HistoryNov 09, 2021 - 9:16 a.m.

Low: libssh security update

2021-11-0909:16:07
Google
osv.dev
9
libssh
security update
cve-2020-16135

AI Score

5.7

Confidence

High

EPSS

0.006

Percentile

78.6%

libssh is a library which implements the SSH protocol. It can be used to implement client and server applications.

Security Fix(es):

  • libssh: NULL pointer dereference in sftpserver.c if ssh_buffer_new returns NULL (CVE-2020-16135)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section.