SynopsisThe libssh2 version running on the remote host is affected by an integer overflow vulnerability.
DescriptionAn integer overflow condition exists in libssh2 before 1.8.1 due to the way packets are read from the server. An authenticated, local attacker can exploit this if they have already compromised an SSH server. The attacker may be able to execute code on the system of users who connect to the SSH server.
SolutionUpgrade to libssh2 version 1.8.1 or later.