Search CVE reports


Toggle filters

1 – 10 of 21 results


CVE-2026-58051

Medium priority
Needs evaluation

libssh2 through 1.11.1 grows its publickey list with SSH2_REALLOC but does not zero-initialize new entries before parsing populates them, so a parse failure reaching the cleanup path leaves libssh2_publickey_list_free operating on...

1 affected package

libssh2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libssh2 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-58050

Medium priority
Needs evaluation

libssh2 through 1.11.1 reads an attacker-controlled 32-bit attribute count from a publickey-subsystem response and uses it in the allocation num_attrs * sizeof(libssh2_publickey_attribute) without bounds checking, so on...

1 affected package

libssh2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libssh2 Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-15661

Medium priority

Some fixes available 3 of 7

libssh2 through 1.11.1, fixed in commit 2dae302, contains an out-of-bounds heap read vulnerability in the sftp_symlink() function in src/sftp.c that allows a malicious SSH server or man-in-the-middle attacker to disclose heap...

1 affected package

libssh2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libssh2 Fixed Fixed Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-55200

Medium priority
Fixed

libssh2 through 1.11.1, fixed in commit 7acf3df contains an out-of-bounds write vulnerability in ssh2_transport_read() that fails to enforce upper bounds on packet_length field. Remote attackers can send crafted SSH packets with...

1 affected package

libssh2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libssh2 Fixed Not affected Not affected Not affected Not affected
Show less packages

CVE-2026-55199

Medium priority

Some fixes available 3 of 7

libssh2 through 1.11.1, fixed in commit 1762685, contains a pre-authentication denial of service vulnerability in the SSH_MSG_EXT_INFO handler in src/packet.c that allows a malicious SSH server to cause a client CPU exhaustion...

1 affected package

libssh2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libssh2 Fixed Fixed Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-7598

Medium priority

Some fixes available 3 of 8

A security vulnerability has been detected in libssh2 up to 1.11.1. The impacted element is the function userauth_password of the file src/userauth.c. Such manipulation of the argument username_len/password_len leads to integer...

1 affected package

libssh2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libssh2 Fixed Fixed Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2023-48795

Medium priority

Some fixes available 46 of 95

The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation...

13 affected packages

dropbear, filezilla, golang-go.crypto, libssh, libssh2...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
dropbear Needs evaluation Needs evaluation Fixed Fixed Fixed
filezilla Fixed Fixed Fixed Fixed Not affected
golang-go.crypto Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
libssh Not affected Not affected Fixed Fixed Not affected
libssh2 Not affected Not affected Not affected Not affected Not affected
lxd Not in release Not in release Not in release Not affected Fixed
openssh Fixed Fixed Fixed Fixed Fixed
openssh-ssh1 Ignored Ignored Ignored Ignored Ignored
paramiko Fixed Fixed Fixed Fixed Needs evaluation
proftpd-dfsg Needs evaluation Not affected Not affected Fixed Needs evaluation
putty Not affected Needs evaluation Needs evaluation Needs evaluation Needs evaluation
python-asyncssh Fixed Fixed Fixed Fixed Ignored
snapd Not affected Not affected Not affected Not affected Not affected
Show all 13 packages Show less packages

CVE-2020-22218

Medium priority
Fixed

An issue was discovered in function _libssh2_packet_add in libssh2 1.10.0 allows attackers to access out of bounds memory.

1 affected package

libssh2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libssh2 Not affected Fixed Fixed
Show less packages

CVE-2019-17498

Medium priority

Some fixes available 2 of 7

In libssh2 v1.9.0 and earlier versions, the SSH_MSG_DISCONNECT logic in packet.c has an integer overflow in a bounds check, enabling an attacker to specify an arbitrary (out-of-bounds) offset for a subsequent memory read....

1 affected package

libssh2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libssh2 Not affected Not affected Not affected Vulnerable Vulnerable
Show less packages

CVE-2019-13115

Medium priority

Some fixes available 2 of 8

In libssh2 before 1.9.0, kex_method_diffie_hellman_group_exchange_sha256_key_exchange in kex.c has an integer overflow that could lead to an out-of-bounds read in the way packets are read from the server. A remote attacker who...

1 affected package

libssh2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libssh2 Not affected Not affected Not affected Vulnerable Vulnerable
Show less packages