nse_libssh2.cc in Nmap 7.70 is subject to a denial of service condition due to a double free when an SSH connection fails, as demonstrated by a leading \n character to ssh-brute.nse or ssh-auth-methods.nse.
{ "binaries": [ { "binary_version": "6.40-0.2ubuntu1", "binary_name": "nmap" }, { "binary_version": "6.40-0.2ubuntu1", "binary_name": "zenmap" } ] }
{ "binaries": [ { "binary_version": "7.01-2ubuntu2", "binary_name": "ndiff" }, { "binary_version": "7.01-2ubuntu2", "binary_name": "nmap" }, { "binary_version": "7.01-2ubuntu2", "binary_name": "zenmap" } ] }
{ "binaries": [ { "binary_version": "7.60-1ubuntu5", "binary_name": "ndiff" }, { "binary_version": "7.60-1ubuntu5", "binary_name": "nmap" }, { "binary_version": "7.60-1ubuntu5", "binary_name": "zenmap" } ] }