CVE-2014-8132
Publication date 28 December 2014
Last updated 24 July 2024
Ubuntu priority
Double free vulnerability in the ssh_packet_kexinit function in kex.c in libssh 0.5.x and 0.6.x before 0.6.4 allows remote attackers to cause a denial of service via a crafted kexinit packet.
Status
Package | Ubuntu Release | Status |
---|---|---|
libssh | ||
14.04 LTS trusty |
Fixed 0.6.1-0ubuntu3.1
|
|
Notes
References
Related Ubuntu Security Notices (USN)
- USN-2478-1
- libssh vulnerability
- 19 January 2015