CVE-2019-3858: Critical severity libssh2 libssh2 vulnerability
A server could send a specially crafted partial SFTP packet with a zero value for the payload length. This zero value would be used to then allocate memory resulting in a zero byte allocation and possible out of bounds read.
Other sources
An out of bounds read flaw was discovered in libssh2 before 1.8.1 when a specially crafted SFTP packet is received from the server. A remote attacker who compromises a SSH server may be able to cause a Denial of Service or read data in the client memory.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2019-3858?
CVE-2019-3858 is an out of bounds read flaw in libssh2 before version 1.8.1.
What is the severity of CVE-2019-3858?
CVE-2019-3858 has a severity rating of 9.1 (critical).
How does CVE-2019-3858 affect the affected software?
CVE-2019-3858 affects the libssh2 package with versions before 1.8.1, Debian Linux 8.0, Fedora 29, openSUSE Leap 15.0 and 42.3, and NetApp ONTAP Select Deploy administration utility.
What is the impact of CVE-2019-3858?
CVE-2019-3858 could allow a remote attacker who compromises an SSH server to cause a Denial of Service or read data in the client memory.
How can I fix CVE-2019-3858?
To fix CVE-2019-3858, update to libssh2 version 1.8.1 or later.