12 Avr 2016
Vulnerability Details :
The diffie_hellman_sha256 function in kex.c in libssh2 before 1.7.0 improperly truncates secrets to 128 or 256 bits, which makes it easier for man-in-the-middle attackers to decrypt or intercept SSH sessions via unspecified vectors, aka a "bits/bytes confusion bug."
Publish Date : 2016-04-13 Last Update Date : 2016-04-18
- CVSS Scores & Vulnerability Types
- Related OVAL Definitions
OVAL (Open Vulnerability and Assessment Language) definitions define exactly what should be done to verify a vulnerability or a missing patch. Check out the OVAL definitions if you want to learn what you should do to verify a vulnerability.
- Products Affected By CVE-2016-0787
- Number Of Affected Versions By Product
- References For CVE-2016-0787
- Metasploit Modules Related To CVE-2016-0787
There are not any metasploit modules related to this CVE entry (Please visit www.metasploit.com for more information)