CVE-2022-27191
18.03.2022, 07:15
The golang.org/x/crypto/ssh package before 0.0.0-20220314234659-1baeb1ce4c0b for Go allows an attacker to crash a server in certain circumstances involving AddHostKey.Enginsight
| Vendor | Product | Version |
|---|---|---|
| golang | ssh | 𝑥 < 0.0.0-20220314234659-1baeb1ce4c0b |
| fedoraproject | extra_packages_for_enterprise_linux | 8.0 |
| redhat | advanced_cluster_management_for_kubernetes | 2.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| golang-go.crypto |
| ||||||||||||||||||||
| lxd |
| ||||||||||||||||||||
| snapd |
|
References