The vendor explicitly identifies these products as affected by this CVE.
- libssh2 as a component of Red Hat Enterprise Linux 6
- libssh2-devel as a component of Red Hat Enterprise Linux 6
- libssh2-docs as a component of Red Hat Enterprise Linux 6
- libssh2.src as a component of Red Hat Enterprise Linux 6
- Summary
- A flaw was found in libssh2. A pre-authentication integer underflow vulnerability exists in the `ssh2_cipher_crypt()` function when negotiating AES-GCM ciphers during the handshake. A malicious SSH server can exploit this to trigger an out-of-bounds read and a memory copy operation with an extremely large length argument, leading to an immediate client process crash. This vulnerability results in a Denial of Service (DoS) for any connecting client.
- Remediation
- For details on how to apply this update, which includes the changes described in this advisory, refer to: https://images.redhat.com/
