Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:13475
HistoryMar 19, 2019 - 3:18 a.m.

Denial Of Service (DoS)

2019-03-1903:18:44
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

0.046 Low

EPSS

Percentile

92.6%

libssh2.so is vulnerable to denial of service. A malicious server is able to crash the process from an out-of-bounds read by sending an empty payload response packet to various commands such as read directory, file status, status vfs and symlink etc.

CPENameOperatorVersion
libssh2.sole1.0.1-1.9.0-5
libssh2le1.4.3.3