Errata ALT-PU-2019-1501-1: Information
Fixes
Published: Dec. 3, 2018
BDU:2019-01303
Уязвимость библиотеки libssh2, связанная с чтением за границами буфера в памяти, позволяющая нарушителю вызвать отказ в обслуживании или раскрыть защищаемую информацию
Severity: CRITICAL (9.1) Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Links:
Published: Dec. 3, 2018
BDU:2019-01304
Уязвимость библиотеки libssh2, вызванная целочисленным переполнением, позволяющая нарушителю выполнить произвольный код
Severity: LOW (3.5) Vector: AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L
Links:
Published: Dec. 3, 2018
BDU:2019-03331
Уязвимость функции _libssh2_transport_read (src/transport.c) библиотеки libssh2, позволяющая нарушителю выполнить произвольный код
Severity: HIGH (8.8) Vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Links:
Published: March 18, 2019
BDU:2019-03795
Уязвимость бибиотеки libssh2, связанная с записью за границами буфера в памяти, позволяющая нарушителю вызвать отказ в обслуживании, выполнить произвольный код или раскрыть защищаемую информацию
Severity: HIGH (8.8) Vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Links:
Published: Dec. 3, 2018
BDU:2019-03864
Уязвимость команды SSH_MSG_CHANNEL_REQUEST библиотеки libssh2, позволяющая нарушителю вызвать отказ в обслуживании или получить несанкционированный доступ к защищаемой информации
Severity: CRITICAL (9.1) Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Links:
Published: Dec. 3, 2018
BDU:2019-03865
Уязвимость библиотеки libssh2, связанная с ошибками обработки несоответствия параметра длины, позволяющая нарушителю вызвать отказ в обслуживании или получить несанкционированный доступ к защищаемой информации
Severity: CRITICAL (9.1) Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Links:
Published: Dec. 3, 2018
BDU:2019-03866
Уязвимость библиотеки libssh2, связанная с чтением данных за границами буфера, позволяющая нарушителю вызвать отказ в обслуживании или получить несанкционированный доступ к защищаемой информации
Severity: CRITICAL (9.1) Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Links:
Published: Dec. 3, 2018
BDU:2019-03867
Уязвимость функций _libssh2_packet_require и _libssh2_packet_requirev библиотеки libssh2, позволяющая нарушителю вызвать отказ в обслуживании или получить несанкционированный доступ к защищаемой информации
Severity: CRITICAL (9.1) Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Links:
Published: Dec. 3, 2018
BDU:2019-03871
Уязвимость библиотеки libssh2, связанная с чтением данных за границами буфера, позволяющая нарушителю вызвать отказ в обслуживании или получить несанкционированный доступ к защищаемой информации
Severity: CRITICAL (9.1) Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Links:
Published: Dec. 3, 2018
BDU:2019-03897
Уязвимость библиотеки libssh2, связанная с целочисленным переполнением, позволяющая нарушителю выполнить произвольный код
Severity: HIGH (8.8) Vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Links:
Published: Dec. 3, 2018
BDU:2019-03898
Уязвимость библиотеки libssh2, связанная с целочисленным переполнением, позволяющая нарушителю выполнить произвольный код
Severity: HIGH (8.8) Vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Links:
Published: Dec. 3, 2018
BDU:2019-03917
Уязвимость команды SSH_MSG_CHANNEL_REQUEST библиотеки libssh2, позволяющая нарушителю выполнить произвольный код
Severity: HIGH (8.8) Vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Links:
Published: March 25, 2019
BDU:2021-06331
Уязвимость функции userauth_keyboard_interactive() в компоненте userauth.c библиотеки libssh2, позволяющая нарушителю выполнить произвольный код
Severity: HIGH (7.5) Vector: AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Links:
Published: March 22, 2019
Modified: Nov. 7, 2023
Modified: Nov. 7, 2023
CVE-2019-3855
An integer overflow flaw which could lead to an out of bounds write was discovered in libssh2 before 1.8.1 in the way packets are read from the server. A remote attacker who compromises a SSH server may be able to execute code on the client system when a user connects to the server.
Severity: HIGH (8.8) Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Links:
- https://www.libssh2.org/CVE-2019-3855.html
- 20190319 [slackware-security] libssh2 (SSA:2019-077-01)
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3855
- 107485
- [oss-security] 20190318 [SECURITY ADVISORIES] libssh2
- http://packetstormsecurity.com/files/152136/Slackware-Security-Advisory-libssh2-Updates.html
- https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2019-767
- [debian-lts-announce] 20190326 [SECURITY] [DLA 1730-1] libssh2 security update
- https://security.netapp.com/advisory/ntap-20190327-0005/
- RHSA-2019:0679
- openSUSE-SU-2019:1075
- openSUSE-SU-2019:1109
- DSA-4431
- 20190415 [SECURITY] [DSA 4431-1] libssh2 security update
- RHSA-2019:1175
- RHSA-2019:1652
- RHSA-2019:1791
- RHSA-2019:1943
- RHSA-2019:2399
- https://support.apple.com/kb/HT210609
- 20190927 APPLE-SA-2019-9-26-7 Xcode 11.0
- 20190927 APPLE-SA-2019-9-26-7 Xcode 11.0
- https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- FEDORA-2019-f31c14682f
- FEDORA-2019-3348cb4934
- FEDORA-2019-9d85600fc7
- FEDORA-2019-5885663621
Published: March 25, 2019
Modified: Nov. 7, 2023
Modified: Nov. 7, 2023
CVE-2019-3856
An integer overflow flaw, which could lead to an out of bounds write, was discovered in libssh2 before 1.8.1 in the way keyboard prompt requests are parsed. A remote attacker who compromises a SSH server may be able to execute code on the client system when a user connects to the server.
Severity: HIGH (8.8) Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Links:
- https://www.libssh2.org/CVE-2019-3856.html
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3856
- [debian-lts-announce] 20190326 [SECURITY] [DLA 1730-1] libssh2 security update
- https://security.netapp.com/advisory/ntap-20190327-0005/
- RHSA-2019:0679
- openSUSE-SU-2019:1075
- openSUSE-SU-2019:1109
- DSA-4431
- 20190415 [SECURITY] [DSA 4431-1] libssh2 security update
- RHSA-2019:1175
- RHSA-2019:1652
- RHSA-2019:1791
- RHSA-2019:1943
- RHSA-2019:2399
- https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- FEDORA-2019-3348cb4934
Published: March 25, 2019
Modified: Nov. 7, 2023
Modified: Nov. 7, 2023
CVE-2019-3857
An integer overflow flaw which could lead to an out of bounds write was discovered in libssh2 before 1.8.1 in the way SSH_MSG_CHANNEL_REQUEST packets with an exit signal are parsed. A remote attacker who compromises a SSH server may be able to execute code on the client system when a user connects to the server.
Severity: HIGH (8.8) Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Links:
- https://www.libssh2.org/CVE-2019-3857.html
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3857
- [debian-lts-announce] 20190326 [SECURITY] [DLA 1730-1] libssh2 security update
- https://security.netapp.com/advisory/ntap-20190327-0005/
- RHSA-2019:0679
- openSUSE-SU-2019:1075
- openSUSE-SU-2019:1109
- DSA-4431
- 20190415 [SECURITY] [DSA 4431-1] libssh2 security update
- RHSA-2019:1175
- RHSA-2019:1652
- RHSA-2019:1791
- RHSA-2019:1943
- RHSA-2019:2399
- https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- FEDORA-2019-3348cb4934
Published: March 22, 2019
Modified: Nov. 7, 2023
Modified: Nov. 7, 2023
CVE-2019-3858
An out of bounds read flaw was discovered in libssh2 before 1.8.1 when a specially crafted SFTP packet is received from the server. A remote attacker who compromises a SSH server may be able to cause a Denial of Service or read data in the client memory.
Severity: CRITICAL (9.1) Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Links:
- https://www.libssh2.org/CVE-2019-3858.html
- 20190319 [slackware-security] libssh2 (SSA:2019-077-01)
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3858
- 107485
- [oss-security] 20190318 [SECURITY ADVISORIES] libssh2
- http://packetstormsecurity.com/files/152136/Slackware-Security-Advisory-libssh2-Updates.html
- https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2019-767
- openSUSE-SU-2019:1075
- openSUSE-SU-2019:1109
- RHSA-2019:2136
- https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- 20190415 [SECURITY] [DSA 4431-1] libssh2 security update
- DSA-4431
- https://security.netapp.com/advisory/ntap-20190327-0005/
- [debian-lts-announce] 20190326 [SECURITY] [DLA 1730-1] libssh2 security update
- FEDORA-2019-f31c14682f
- FEDORA-2019-3348cb4934
Published: March 21, 2019
Modified: Nov. 7, 2023
Modified: Nov. 7, 2023
CVE-2019-3859
An out of bounds read flaw was discovered in libssh2 before 1.8.1 in the _libssh2_packet_require and _libssh2_packet_requirev functions. A remote attacker who compromises a SSH server may be able to cause a Denial of Service or read data in the client memory.
Severity: CRITICAL (9.1) Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Links:
- https://www.libssh2.org/CVE-2019-3859.html
- 20190319 [slackware-security] libssh2 (SSA:2019-077-01)
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3859
- 107485
- [oss-security] 20190318 [SECURITY ADVISORIES] libssh2
- http://packetstormsecurity.com/files/152136/Slackware-Security-Advisory-libssh2-Updates.html
- https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2019-767
- [debian-lts-announce] 20190326 [SECURITY] [DLA 1730-1] libssh2 security update
- https://security.netapp.com/advisory/ntap-20190327-0005/
- openSUSE-SU-2019:1075
- [debian-lts-announce] 20190402 [SECURITY] [DLA 1730-2] libssh2 regression update
- openSUSE-SU-2019:1109
- DSA-4431
- 20190415 [SECURITY] [DSA 4431-1] libssh2 security update
- openSUSE-SU-2019:1291
- openSUSE-SU-2019:1290
- [debian-lts-announce] 20190725 [SECURITY] [DLA 1730-3] libssh2 regression update
- https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- FEDORA-2019-f31c14682f
- FEDORA-2019-3348cb4934
Published: March 25, 2019
Modified: Nov. 7, 2023
Modified: Nov. 7, 2023
CVE-2019-3860
An out of bounds read flaw was discovered in libssh2 before 1.8.1 in the way SFTP packets with empty payloads are parsed. A remote attacker who compromises a SSH server may be able to cause a Denial of Service or read data in the client memory.
Severity: CRITICAL (9.1) Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Links:
- https://www.libssh2.org/CVE-2019-3860.html
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3860
- [debian-lts-announce] 20190326 [SECURITY] [DLA 1730-1] libssh2 security update
- https://security.netapp.com/advisory/ntap-20190327-0005/
- openSUSE-SU-2019:1075
- openSUSE-SU-2019:1109
- DSA-4431
- 20190415 [SECURITY] [DSA 4431-1] libssh2 security update
- openSUSE-SU-2019:1640
- [debian-lts-announce] 20190730 [SECURITY] [DLA 1730-4] libssh2 regression update
- https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- FEDORA-2019-3348cb4934
Published: March 25, 2019
Modified: Nov. 7, 2023
Modified: Nov. 7, 2023
CVE-2019-3861
An out of bounds read flaw was discovered in libssh2 before 1.8.1 in the way SSH packets with a padding length value greater than the packet length are parsed. A remote attacker who compromises a SSH server may be able to cause a Denial of Service or read data in the client memory.
Severity: CRITICAL (9.1) Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Links:
- https://www.libssh2.org/CVE-2019-3861.html
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3861
- [debian-lts-announce] 20190326 [SECURITY] [DLA 1730-1] libssh2 security update
- https://security.netapp.com/advisory/ntap-20190327-0005/
- openSUSE-SU-2019:1075
- openSUSE-SU-2019:1109
- DSA-4431
- 20190415 [SECURITY] [DSA 4431-1] libssh2 security update
- RHSA-2019:2136
- https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- FEDORA-2019-3348cb4934
Published: March 21, 2019
Modified: Nov. 7, 2023
Modified: Nov. 7, 2023
CVE-2019-3862
An out of bounds read flaw was discovered in libssh2 before 1.8.1 in the way SSH_MSG_CHANNEL_REQUEST packets with an exit status message and no payload are parsed. A remote attacker who compromises a SSH server may be able to cause a Denial of Service or read data in the client memory.
Severity: CRITICAL (9.1) Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Links:
- https://www.libssh2.org/CVE-2019-3862.html
- 20190319 [slackware-security] libssh2 (SSA:2019-077-01)
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3862
- 107485
- [oss-security] 20190318 [SECURITY ADVISORIES] libssh2
- http://packetstormsecurity.com/files/152136/Slackware-Security-Advisory-libssh2-Updates.html
- https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2019-767
- [debian-lts-announce] 20190326 [SECURITY] [DLA 1730-1] libssh2 security update
- https://security.netapp.com/advisory/ntap-20190327-0005/
- openSUSE-SU-2019:1075
- openSUSE-SU-2019:1109
- DSA-4431
- 20190415 [SECURITY] [DSA 4431-1] libssh2 security update
- RHSA-2019:1884
- https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- https://www.oracle.com/security-alerts/cpujan2020.html
- FEDORA-2019-f31c14682f
- FEDORA-2019-3348cb4934
Published: March 25, 2019
Modified: Nov. 7, 2023
Modified: Nov. 7, 2023
CVE-2019-3863
A flaw was found in libssh2 before 1.8.1. A server could send a multiple keyboard interactive response messages whose total length are greater than unsigned char max characters. This value is used as an index to copy memory causing in an out of bounds memory write error.
Severity: HIGH (8.8) Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Links:
- https://www.libssh2.org/CVE-2019-3863.html
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3863
- [debian-lts-announce] 20190326 [SECURITY] [DLA 1730-1] libssh2 security update
- https://security.netapp.com/advisory/ntap-20190327-0005/
- RHSA-2019:0679
- openSUSE-SU-2019:1075
- openSUSE-SU-2019:1109
- DSA-4431
- 20190415 [SECURITY] [DSA 4431-1] libssh2 security update
- RHSA-2019:1175
- RHSA-2019:1652
- RHSA-2019:1791
- RHSA-2019:1943
- RHSA-2019:2399
- https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- FEDORA-2019-3348cb4934