oss-sec mailing list archives

CVE-2021-30129: DoS/OOM leak vulnerability in Apache Mina SSHD Server


From: Guillaume Nodet <gnodet () apache org>
Date: Mon, 12 Jul 2021 11:53:55 +0000

Description:

A vulnerability in sshd-core of Apache Mina SSHD allows an attacker to overflow the server causing an OutOfMemory 
error.  This issue affects the SFTP and port forwarding features of Apache Mina SSHD version 2.0.0 and later versions.  
It was addressed in Apache Mina SSHD 2.7.0

This issue is being tracked as SSHD-1125


Current thread: