libssh2 1.11.0-2ubuntu0.1 source package in Ubuntu

Changelog

libssh2 (1.11.0-2ubuntu0.1) mantic-security; urgency=medium

  * SECURITY UPDATE: Prefix truncation attack on BPP
    - debian/patches/CVE-2023-48795.patch: implement "strict key exchange"
      in src/kex.c, src/libssh2_priv.h, src/packet.c, src/packet.h,
      src/session.c, src/transport.c.
    - CVE-2023-48795

 -- Marc Deslauriers <email address hidden>  Wed, 10 Jan 2024 12:32:11 -0500

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Mantic
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Mantic updates main libs
Mantic security main libs

Downloads

File Size SHA-256 Checksum
libssh2_1.11.0.orig.tar.gz 1.0 MiB 3736161e41e2693324deb38c26cfdc3efe6209d634ba4258db1cecff6a5ad461
libssh2_1.11.0.orig.tar.gz.asc 488 bytes b6a32c85a3f9b6f30f2b3595ba034b48a8508ee9c94708ef811f58fd7adfcdee
libssh2_1.11.0-2ubuntu0.1.debian.tar.xz 13.4 KiB 9f48194ecc40600080519c2def090e37d60ed63a6df264c3091d46382a81e0a8
libssh2_1.11.0-2ubuntu0.1.dsc 2.3 KiB 8f4cf7fa2646249cd9e0bc257771b80a033c4b13f59a4768ce4971549036bf0b

View changes file

Binary packages built by this source

libssh2-1: SSH2 client-side library

 libssh2 is a client-side C library implementing the SSH2 protocol.
 It supports regular terminal, SCP and SFTP (v1-v5) sessions;
 port forwarding, X11 forwarding; password, key-based and
 keyboard-interactive authentication.
 .
 This package contains the runtime library.

libssh2-1-dbgsym: debug symbols for libssh2-1
libssh2-1-dev: SSH2 client-side library (development headers)

 libssh2 is a client-side C library implementing the SSH2 protocol.
 It supports regular terminal, SCP and SFTP (v1-v5) sessions;
 port forwarding, X11 forwarding; password, key-based and
 keyboard-interactive authentication.
 .
 This package contains the development files.