ELSA-2022-2031

ELSA-2022-2031 - libssh security, bug fix, and enhancement update

Type:SECURITY
Impact:LOW
Release Date:2022-05-17

Description


[0.9.6-3]
- Remove STI tests

[0.9.6-2]
- Remove bad patch causing errors
- Adding BuildRequires for openssh (SSHD support)

[0.9.6-1]
- Fix CVE-2021-3634: Fix possible heap-buffer overflow when
rekeying with different key exchange mechanism
- Rebase to version 0.9.6
- Rename SSHD_EXECUTABLE to SSH_EXECUTABLE in tests/torture.c
- Resolves: rhbz#1896651, rhbz#1994600

[0.9.4-4]
- Revert previous commit as it is incorrect.

[0.9.6-1]
- Fix CVE-2021-3634: Fix possible heap-buffer overflow when
rekeying with different key exchange mechanism (#1978810)


Related CVEs


CVE-2021-3634

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) libssh-0.9.6-3.el8.src.rpm01411a05a8ded11964f9a563c36780826e060e27b3fa5209594839b553c5c94e-ol8_aarch64_appstream
libssh-0.9.6-3.el8.src.rpm01411a05a8ded11964f9a563c36780826e060e27b3fa5209594839b553c5c94e-ol8_aarch64_baseos_latest
libssh-0.9.6-3.el8.src.rpm01411a05a8ded11964f9a563c36780826e060e27b3fa5209594839b553c5c94e-ol8_aarch64_u6_baseos_base
libssh-0.9.6-3.el8.src.rpm01411a05a8ded11964f9a563c36780826e060e27b3fa5209594839b553c5c94e-ol8_aarch64_u7_baseos_base
libssh-0.9.6-3.el8.aarch64.rpm6fd1aacc39141ecd3567c10fa2efd230ad4b4e1c996ac0826e1f5e66e09d3d59-ol8_aarch64_baseos_latest
libssh-0.9.6-3.el8.aarch64.rpm6fd1aacc39141ecd3567c10fa2efd230ad4b4e1c996ac0826e1f5e66e09d3d59-ol8_aarch64_u6_baseos_base
libssh-0.9.6-3.el8.aarch64.rpm6fd1aacc39141ecd3567c10fa2efd230ad4b4e1c996ac0826e1f5e66e09d3d59-ol8_aarch64_u7_baseos_base
libssh-config-0.9.6-3.el8.noarch.rpm1c420d2fadc5890fad86a22569722234aa271556ef535af63397437af2a2045f-ol8_aarch64_baseos_latest
libssh-config-0.9.6-3.el8.noarch.rpm1c420d2fadc5890fad86a22569722234aa271556ef535af63397437af2a2045f-ol8_aarch64_u6_baseos_base
libssh-config-0.9.6-3.el8.noarch.rpm1c420d2fadc5890fad86a22569722234aa271556ef535af63397437af2a2045f-ol8_aarch64_u7_baseos_base
libssh-devel-0.9.6-3.el8.aarch64.rpm967e26f17dd11a9b0822df5dbe7ad67c300991c50036ad92d57f681fb0abdf9f-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) libssh-0.9.6-3.el8.src.rpm01411a05a8ded11964f9a563c36780826e060e27b3fa5209594839b553c5c94e-ol8_x86_64_appstream
libssh-0.9.6-3.el8.src.rpm01411a05a8ded11964f9a563c36780826e060e27b3fa5209594839b553c5c94e-ol8_x86_64_baseos_latest
libssh-0.9.6-3.el8.src.rpm01411a05a8ded11964f9a563c36780826e060e27b3fa5209594839b553c5c94e-ol8_x86_64_u6_baseos_base
libssh-0.9.6-3.el8.src.rpm01411a05a8ded11964f9a563c36780826e060e27b3fa5209594839b553c5c94e-ol8_x86_64_u7_baseos_base
libssh-0.9.6-3.el8.i686.rpmb72dac1a83b644cef9fe0b7ea40c959118d78070034141580b494b464d544e3d-ol8_x86_64_baseos_latest
libssh-0.9.6-3.el8.i686.rpmb72dac1a83b644cef9fe0b7ea40c959118d78070034141580b494b464d544e3d-ol8_x86_64_u6_baseos_base
libssh-0.9.6-3.el8.i686.rpmb72dac1a83b644cef9fe0b7ea40c959118d78070034141580b494b464d544e3d-ol8_x86_64_u7_baseos_base
libssh-0.9.6-3.el8.x86_64.rpm1de34627260ceac3719cf4176c96b454c5c978cb9c65f50b8179127313411b66-exadata_dbserver_23.1.0.0.0_x86_64_base
libssh-0.9.6-3.el8.x86_64.rpm1de34627260ceac3719cf4176c96b454c5c978cb9c65f50b8179127313411b66-exadata_dbserver_23.1.1.0.0_x86_64_base
libssh-0.9.6-3.el8.x86_64.rpm1de34627260ceac3719cf4176c96b454c5c978cb9c65f50b8179127313411b66-exadata_dbserver_23.1.2.0.0_x86_64_base
libssh-0.9.6-3.el8.x86_64.rpm1de34627260ceac3719cf4176c96b454c5c978cb9c65f50b8179127313411b66-ol8_x86_64_baseos_latest
libssh-0.9.6-3.el8.x86_64.rpm1de34627260ceac3719cf4176c96b454c5c978cb9c65f50b8179127313411b66-ol8_x86_64_u6_baseos_base
libssh-0.9.6-3.el8.x86_64.rpm1de34627260ceac3719cf4176c96b454c5c978cb9c65f50b8179127313411b66-ol8_x86_64_u7_baseos_base
libssh-config-0.9.6-3.el8.noarch.rpm1c420d2fadc5890fad86a22569722234aa271556ef535af63397437af2a2045f-exadata_dbserver_23.1.0.0.0_x86_64_base
libssh-config-0.9.6-3.el8.noarch.rpm1c420d2fadc5890fad86a22569722234aa271556ef535af63397437af2a2045f-exadata_dbserver_23.1.1.0.0_x86_64_base
libssh-config-0.9.6-3.el8.noarch.rpm1c420d2fadc5890fad86a22569722234aa271556ef535af63397437af2a2045f-exadata_dbserver_23.1.2.0.0_x86_64_base
libssh-config-0.9.6-3.el8.noarch.rpm1c420d2fadc5890fad86a22569722234aa271556ef535af63397437af2a2045f-ol8_x86_64_baseos_latest
libssh-config-0.9.6-3.el8.noarch.rpm1c420d2fadc5890fad86a22569722234aa271556ef535af63397437af2a2045f-ol8_x86_64_u6_baseos_base
libssh-config-0.9.6-3.el8.noarch.rpm1c420d2fadc5890fad86a22569722234aa271556ef535af63397437af2a2045f-ol8_x86_64_u7_baseos_base
libssh-devel-0.9.6-3.el8.i686.rpm9436cd057e6cf5e02bcc05046c2ae3eb2af04023ce0870040a2eb43a09a673c5-ol8_x86_64_appstream
libssh-devel-0.9.6-3.el8.x86_64.rpm76fcffe72b3321302ad504b209041c877cffe1c23109e4218ee8bea385d46ade-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete