CVE-2020-16135
Summary
| CVE | CVE-2020-16135 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-07-29 21:15:00 UTC |
| Updated | 2023-11-07 03:18:00 UTC |
| Description | libssh 0.9.4 has a NULL pointer dereference in tftpserver.c if ssh_buffer_new returns NULL. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] Fedora 32 Update: libssh-0.9.5-1.fc32 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] [DLA 2303-1] libssh security update |
MLIST |
lists.debian.org |
Third Party Advisory |
| Oracle Critical Patch Update Advisory - April 2022 |
MISC |
www.oracle.com |
|
| ⚓ T232 [sftpserver] NULL pointer deref |
MISC |
bugs.libssh.org |
Issue Tracking, Vendor Advisory |
| libssh: Denial of Service (GLSA 202011-05) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| USN-4447-1: libssh vulnerability | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| [SECURITY] Fedora 33 Update: libssh-0.9.5-1.fc33 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| rLIBSSHe631ebb3e224 |
MISC |
bugs.libssh.org |
Exploit, Issue Tracking, Vendor Advisory |
| Add missing return checks (!120) · Merge Requests · libssh project / libssh-mirror · GitLab |
MISC |
gitlab.com |
Third Party Advisory |
| [SECURITY] Fedora 32 Update: libssh-0.9.5-1.fc32 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 33 Update: libssh-0.9.5-1.fc33 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 159504 Oracle Enterprise Linux Security Update for libssh (ELSA-2021-4387)
- 239795 Red Hat Update for libssh (RHSA-2021:4387)
- 501064 Alpine Linux Security Update for libssh
- 501611 Alpine Linux Security Update for libssh
- 755806 SUSE Enterprise Linux Security Update for libssh (SUSE-SU-2024:0539-1)
- 940260 AlmaLinux Security Update for libssh (ALSA-2021:4387)
- 960764 Rocky Linux Security Update for libssh (RLSA-2021:4387)