The kex_agree_methods function in libssh2 before 1.5.0 allows remote servers to cause a denial of service (crash) or have other unspecified impact via crafted length values in an SSH_MSG_KEXINIT packet.
| Software | From | Fixed in |
|---|---|---|
| debian / debian_linux | 7.0 | 7.0.x |
| libssh2 / libssh2 | - | 1.4.3.x |
| fedoraproject / fedora | 22 | 22.x |
| fedoraproject / fedora | 20 | 20.x |
| fedoraproject / fedora | 21 | 21.x |