TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2025-22869

HIGH
7.5

Beschreibung

SSH servers which implement file transfer protocols are vulnerable to a denial of service attack from clients which complete the key exchange slowly, or not at all, causing pending content to be read into memory, but never transmitted.

CVE Details

CVSS v3.1 Bewertung7.5
SchweregradHIGH
CVSS VektorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
AngriffsvektorNETWORK
KomplexitatLOW
Erforderliche PrivilegienNONE
BenutzerinteraktionNONE
Veroffentlicht2/26/2025
Zuletzt geandert5/1/2025
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

go:ssh

Schwachen (CWE)

CWE-770

Referenzen

https://go.dev/cl/652135(security@golang.org)
https://go.dev/issue/71931(security@golang.org)
https://security.netapp.com/advisory/ntap-20250411-0010/(af854a3a-2127-422b-91ae-364da2661108)

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.