A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a partially initialized cipher context. This occurs because the OpenSSL error code returned aliases with the SSH_OK code, resulting in libssh not properly detecting the error returned by the OpenSSL library. This issue can lead to undefined behavior, including compromised data confidentiality and integrity or crashes.
CVSS Details
- CVSS 3.1 Base Score: 8.1
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | — | Upgrade libssh-develUpgrade libsshUpgrade libssh-config | Dec 24, 2025 | Dec 17, 2025 |
| Alpine Linux | — | Upgrade libssh | Aug 8, 2025 | Jul 7, 2025 |
| Amazon_linux_2023 | — | Upgrade libssh-debuginfoUpgrade libssh-debugsourceUpgrade libssh-configUpgrade libsshUpgrade libssh-devel | Sep 9, 2025 | Apr 26, 2025 |
| Debian | — | Upgrade libssh | Jun 26, 2025 | Jun 26, 2025 |
| Nutanix Ahv | — | Upgrade Nutanix AHV to the latest version | Jun 5, 2026 | Mar 26, 2026 |
| Oracle_linux | — | Upgrade libssh-develUpgrade libssh-configUpgrade libssh | Dec 22, 2025 | Apr 26, 2025 |
| Redhat_linux | — | Upgrade libssh-configUpgrade libssh-develNo solution existsUpgrade libssh-debugsourceUpgrade libsshUpgrade libssh-debuginfo | Jul 9, 2025 | Jul 7, 2025 |
| Rocky_linux | — | Upgrade libssh-debugsourceUpgrade libssh-debuginfoUpgrade libssh-develUpgrade libssh | Feb 5, 2026 | Dec 18, 2025 |
| Suse | — | Upgrade libssh-develUpgrade libssh4Upgrade libssh-config | Nov 5, 2025 | Aug 14, 2025 |
| Ubuntu | — | Upgrade libssh-4 | Jul 8, 2025 | Jun 25, 2025 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Sep 2, 2025 | Jul 7, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub