{"id":"CVE-2013-0176","details":"The publickey_from_privatekey function in libssh before 0.5.4, when no algorithm is matched during negotiations, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a \"Client: Diffie-Hellman Key Exchange Init\" packet.","modified":"2026-04-10T03:42:37.619211Z","published":"2013-02-05T23:55:01Z","related":["openSUSE-SU-2024:10036-1"],"references":[{"type":"ADVISORY","url":"http://secunia.com/advisories/51982"},{"type":"ADVISORY","url":"http://www.libssh.org/2013/01/22/libssh-0-5-4-security-release/"},{"type":"ADVISORY","url":"http://www.ubuntu.com/usn/USN-1707-1"},{"type":"FIX","url":"http://www.libssh.org/2013/01/22/libssh-0-5-4-security-release/"},{"type":"WEB","url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-February/098065.html"},{"type":"WEB","url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-February/098094.html"},{"type":"WEB","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/81595"}],"schema_version":"1.7.5"}