First published: Mon Oct 22 2018(Updated: )
USN-3795-1 fixed a vulnerability in libssh. This update provides the corresponding update for Ubuntu 18.10. Original advisory details: Peter Winter-Smith discovered that libssh incorrectly handled authentication when being used as a server. A remote attacker could use this issue to bypass authentication without any credentials.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libssh-4 | <0.8.1-1ubuntu0.1 | 0.8.1-1ubuntu0.1 |
Ubuntu Ubuntu | =18.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue is USN-3795-2.
The software affected by this vulnerability is libssh-4 version 0.8.1-1ubuntu0.1 on Ubuntu 18.10.
The severity of this vulnerability is not specified.
To fix this vulnerability, update the libssh-4 package to version 0.8.1-1ubuntu0.1 or later.
You can find more information about this vulnerability at the following references: [USN-3795-1](https://ubuntu.com/security/notices/USN-3795-1), [CVE-2018-10933](https://ubuntu.com/security/CVE-2018-10933).