CVE-2022-27191

SOURCE - github

Summary

The golang.org/x/crypto/ssh package before 0.0.0-20220314234659-1baeb1ce4c0b for Go allows an attacker to crash a server in certain circumstances involving AddHostKey.

EPSS Score: 0.00253 (0.650)

Common Weakness Enumeration (CWE)

SOURCE - nist
SOURCE - github

Use of a Broken or Risky Cryptographic Algorithm

SOURCE - gitlab

OWASP Top Ten 2017 Category A9 - Using Components with Known Vulnerabilities

Use of a Broken or Risky Cryptographic Algorithm

OWASP Top Ten 2013 Category A9 - Using Components with Known Vulnerabilities

SOURCE - redhat

Use of a Broken or Risky Cryptographic Algorithm


Sign in to Docker Scout

See which of your images are affected by this CVE and how to fix them by signing into Docker Scout.

Sign in