Get a Pentest and security assessment of your IT network.

2021-current

CVE-2020-1730 – A flaw was found in libssh versions before 0.8.9 and before 0.9.4 in the

A flaw was found in libssh versions before 0.8.9 and before 0.9.4 in the way it handled AES-CTR (or DES ciphers if enabled) ciphers. The server or client could crash when the connection hasn’t been fully initialized and the system tries to cleanup the ciphers when closing the connection. The biggest threat from this vulnerability is system availability.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1730

Reference (s):

  • https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1730
  • URL: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1730
  • https://security.netapp.com/advisory/ntap-20200424-0001/
  • URL: https://security.netapp.com/advisory/ntap-20200424-0001/
  • FEDORA:FEDORA-2020-5a77f0d68f
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-6594 - Unspecified vulnerability in the Oracle iLearning component in Oracle iLe

2021-current

CVE-2019-8457 - SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-b

2021-current

CVE-2020-12257 - rConfig 3.9.4 is vulnerable to cross-site request forgery (CSRF) because