← Back to CVEs
CVE-2017-18594
N/ADescription
nse_libssh2.cc in Nmap 7.70 is subject to a denial of service condition due to a double free when an SSH connection fails, as demonstrated by a leading \n character to ssh-brute.nse or ssh-auth-methods.nse.
CVE Details
CVSS v3.1 ScoreN/A
Published8/29/2019
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0
Affected Products
nmap:nmap
Weaknesses (CWE)
CWE-415
References
https://github.com/nmap/nmap/issues/1077(cve@mitre.org)
https://github.com/nmap/nmap/issues/1227(cve@mitre.org)
https://seclists.org/nmap-announce/2019/0(cve@mitre.org)
https://seclists.org/nmap-dev/2018/q2/45(cve@mitre.org)
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00073.html(af854a3a-2127-422b-91ae-364da2661108)
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00075.html(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/AMatchandaHaystack/Research/blob/master/Nmap%26libsshDF(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/nmap/nmap/commit/350bbe0597d37ad67abe5fef8fba984707b4e9ad(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/nmap/nmap/issues/1077(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/nmap/nmap/issues/1227(af854a3a-2127-422b-91ae-364da2661108)
https://seclists.org/nmap-announce/2019/0(af854a3a-2127-422b-91ae-364da2661108)
https://seclists.org/nmap-dev/2018/q2/45(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.