Publishing details

Changelog

libssh2 (1.11.0-2ubuntu0.1) mantic-security; urgency=medium

  * SECURITY UPDATE: Prefix truncation attack on BPP
    - debian/patches/CVE-2023-48795.patch: implement "strict key exchange"
      in src/kex.c, src/libssh2_priv.h, src/packet.c, src/packet.h,
      src/session.c, src/transport.c.
    - CVE-2023-48795

 -- Marc Deslauriers <email address hidden>  Wed, 10 Jan 2024 12:32:11 -0500

Available diffs

Builds

Built packages

Package files