Alan J. Wylie

libssh and libssh2

There are two similarly named projects:

libssh: the one with the vulnerability, and libssh2 which so far doesn't seem to be affected.

Red Hat / Centos, at least, use libssh2.

Note also that it only affects servers, not clients. sftp servers seem to be the most likely to be vulnerable and exposed.

