CVE-2022-27191
18.03.2022, 07:15
The golang.org/x/crypto/ssh package before 0.0.0-20220314234659-1baeb1ce4c0b for Go allows an attacker to crash a server in certain circumstances involving AddHostKey.Enginsight
Vendor | Product | Version |
---|---|---|
golang | ssh | 𝑥 < 0.0.0-20220314234659-1baeb1ce4c0b |
fedoraproject | extra_packages_for_enterprise_linux | 8.0 |
redhat | advanced_cluster_management_for_kubernetes | 2.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
golang-go.crypto |
| ||||||||||||||||||||
lxd |
| ||||||||||||||||||||
snapd |
|
References