Vulnerability Name:

CVE-2021-43565 (CCN-235647)

Assigned:2021-12-02
Published:2021-12-02
Updated:2022-09-09
Summary:The x/crypto/ssh package before 0.0.0-20211202192323-5770296d904e of golang.org/x/crypto allows an attacker to panic an SSH server.
CVSS v3 Severity:7.5 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
6.5 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
6.5 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
CVSS v2 Severity:7.8 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
Vulnerability Type:CWE-noinfo
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2021-43565

Source: XF
Type: UNKNOWN
golang-cve202143565-dos(235647)

Source: CCN
Type: Google Groups Web site
Vulnerability in golang.org/x/crypto/ssh

Source: CCN
Type: Golang Web site
x/crypto/ssh package

Oval Definitions
Definition IDClassTitleLast Modified
oval:org.opensuse.security:def:7853
P
docker-20.10.23_ce-150000.175.1 on GA media (Moderate)
2023-06-12
oval:org.opensuse.security:def:7860
P
kubevirt-manifests-0.58.0-150500.6.3 on GA media (Moderate)
2023-06-12
oval:org.opensuse.security:def:3246
P
libquicktime0-1.2.4-14.3.1 on GA media (Moderate)
2022-06-28
oval:org.opensuse.security:def:3668
P
librelp0-1.2.12-3.3.1 on GA media (Moderate)
2022-06-28
oval:org.opensuse.security:def:3806
P
tomcat-9.0.21-3.13.2 on GA media (Moderate)
2022-06-28
oval:org.opensuse.security:def:94876
P
kubevirt-manifests-0.49.0-150400.1.37 on GA media (Moderate)
2022-06-22
oval:org.opensuse.security:def:119204
P
Security update for containerd, docker (Important)
2022-05-16
oval:org.opensuse.security:def:93296
P
(Important)
2022-05-16
oval:org.opensuse.security:def:1514
P
Security update for containerd, docker (Important)
2022-05-16
oval:org.opensuse.security:def:119579
P
Security update for containerd, docker (Important)
2022-05-16
oval:org.opensuse.security:def:94025
P
(Important)
2022-05-16
oval:org.opensuse.security:def:42286
P
Security update for containerd, docker (Important)
2022-05-16
oval:org.opensuse.security:def:992
P
Security update for containerd, docker (Important)
2022-05-16
oval:org.opensuse.security:def:95298
P
Security update for containerd, docker (Important)
2022-05-16
oval:org.opensuse.security:def:93454
P
(Important)
2022-05-16
oval:org.opensuse.security:def:482
P
Security update for containerd, docker (Important)
2022-05-16
oval:org.opensuse.security:def:118897
P
Security update for containerd, docker (Important)
2022-05-16
oval:org.opensuse.security:def:94237
P
(Important)
2022-05-16
oval:org.opensuse.security:def:42385
P
Security update for containerd, docker (Important)
2022-05-16
oval:org.opensuse.security:def:119394
P
Security update for containerd, docker (Important)
2022-05-16
oval:org.opensuse.security:def:93608
P
(Important)
2022-05-16
oval:org.opensuse.security:def:94446
P
(Important)
2022-05-16
oval:org.opensuse.security:def:93136
P
(Important)
2022-05-16
oval:org.opensuse.security:def:118707
P
Security update for containerd, docker (Important)
2022-05-16
oval:org.opensuse.security:def:93811
P
(Important)
2022-05-16
oval:org.opensuse.security:def:42184
P
Security update for containerd, docker (Important)
2022-05-16
oval:org.opensuse.security:def:101685
P
Security update for containerd, docker (Important) (in QA)
2022-04-29
oval:org.opensuse.security:def:102092
P
Security update for containerd, docker (Important) (in QA)
2022-04-29
oval:org.opensuse.security:def:101689
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-libguestfs-tools-container, virt-operator-container (Moderate)
2022-02-18
oval:org.opensuse.security:def:998
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-libguestfs-tools-container, virt-operator-container (Moderate)
2022-02-18
oval:org.opensuse.security:def:118877
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important)
2022-01-19
oval:org.opensuse.security:def:119374
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important)
2022-01-19
oval:org.opensuse.security:def:118687
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important)
2022-01-19
oval:org.opensuse.security:def:119184
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important)
2022-01-19
oval:org.opensuse.security:def:119559
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important)
2022-01-19
oval:org.opensuse.security:def:112529
P
kubevirt-container-disk-0.49.0-1.1 on GA media (Moderate)
2022-01-17
oval:org.opensuse.security:def:67383
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important)
2022-01-10
oval:org.opensuse.security:def:6294
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important)
2022-01-10
oval:org.opensuse.security:def:111869
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important)
2022-01-10
oval:org.opensuse.security:def:101688
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important)
2022-01-10
oval:org.opensuse.security:def:76451
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important)
2022-01-10
oval:org.opensuse.security:def:997
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important)
2022-01-10
oval:org.opensuse.security:def:64895
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important)
2022-01-10
oval:org.opensuse.security:def:102883
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:96203
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:10437
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:109569
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:102893
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:70020
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:9122
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:96213
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:109591
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:102903
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:70577
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:9132
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:109549
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:96241
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:102925
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:96193
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:9880
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
oval:org.opensuse.security:def:109559
P
Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-operator-container (Important) (in QA)
2022-01-03
BACK