Weakness
A flaw was found in libssh. Logic errors in automatic certificate-based public key authentication can cause libssh clients to loop indefinitely when configured certificates are missing or repeatedly rejected by a server, leading to denial of service.
Affected products
- libssh libssh
- redhat hardened_images
- redhat enterprise_linux
- redhat enterprise_linux_for_els
- redhat enterprise_linux_for_eus
- redhat enterprise_linux_for_ibm_z_systems
- redhat enterprise_linux_for_ibm_z_systems_els
- redhat enterprise_linux_for_ibm_z_systems_eus
References
Find the bug before an attacker does.
Sign in with GitHub and run your first audit in under a minute. The free plan needs no credit card.