CVE-2020-22218

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Aug 22, 2023
Updated: Oct 6, 2023
CWE ID 787

Summary

CVE-2020-22218 is a memory vulnerability affecting the _libssh2_packet_add function in libssh2 version 1.10.0. This issue grants attackers the ability to access out-of-bounds memory, potentially leading to buffer overflows and code injection. Successful exploitation could result in arbitrary code execution and significant security risks. It is recommended that users upgrade to a patched version of libssh2 as soon as possible to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share