CVE-2013-0176
EPSS 1.0%Published: 2/5/2013Modified: 4/28/2026
Also known as:DEBIAN-CVE-2013-0176
Description
The publickey_from_privatekey function in libssh before 0.5.4, when no algorithm is matched during negotiations, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a "Client: Diffie-Hellman Key Exchange Init" packet.
Affected packages (1)
- Debian/libsshfrom 0, < 0.5.4-1