HomeSolus

Update libssh to 0.8.6

Authored by kyrios123 on Dec 24 2018, 9:51 AM.

Description

Update libssh to 0.8.6

Summary:

  • Fixed compilation issues with different OpenSSL versions
  • Fixed StrictHostKeyChecking in new knownhosts API
  • Fixed ssh_send_keepalive() with packet filter
  • Fixed possible crash with knownhosts options
  • Fixed issus with rekeying
  • Fixed strong ECDSA keys
  • Fixed some issues with rsa-sha2 extentions
  • Fixed access violation in ssh_init() (static linking)
  • Fixed ssh_channel_close() handling
  • Added support to get known_hosts locations with ssh_options_get()
  • Fixed preferred algorithm for known hosts negotiations
  • Fixed KEX with some server implementations (e.g. Cisco)
  • Fixed keyboard-interactive auth in server mode (regression from CVE-2018-10933)
  • Fixed gssapi auth in server mode (regression from CVE-2018-10933)
  • Fixed socket fd handling with proxy command
  • Fixed a memory leak with OpenSSL

Signed-off-by: Pierre-Yves <pyu@riseup.net>

Test Plan:

  • Unit tests are OK
  • Successfully rebuild exiv2 and ffmpeg against this version

Reviewers: Triage Team, JoshStrobl

Reviewed By: Triage Team, JoshStrobl

Differential Revision: https://dev.getsol.us/D4808

Details

Committed
kyrios123Dec 25 2018, 3:48 PM
Pushed
kyrios123Dec 25 2018, 3:48 PM
Reviewer
Triage Team
Differential Revision
D4808: Update libssh to 0.8.6
Parents
R1861:9f3a58512296: Update libssh to 0.8.4 to address CVE-2018-10933
Branches
Unknown
Tags
Unknown
References
tag: libssh-0.8.6-6