A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a partially initialized cipher context. This occurs because the OpenSSL error code returned aliases with the SSH_OK code, resulting in libssh not properly detecting the error returned by the OpenSSL library. This issue can lead to undefined behavior, including compromised data confidentiality and integrity or crashes.
CVSS Details
- CVSS 3.1 Base Score: 8.1
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | — | Upgrade libssh-configUpgrade libsshUpgrade libssh-devel | Dec 24, 2025 | Dec 17, 2025 |
| Alpine Linux | — | Upgrade libssh | Aug 8, 2025 | Jul 7, 2025 |
| Amazon_linux_2023 | — | Upgrade libssh-debugsourceUpgrade libssh-debuginfoUpgrade libssh-configUpgrade libsshUpgrade libssh-devel | Sep 9, 2025 | Apr 26, 2025 |
| Debian | — | Upgrade libssh | Jun 26, 2025 | Jun 26, 2025 |
| Nutanix Ahv | — | Upgrade Nutanix AHV to the latest version | Jun 5, 2026 | Mar 26, 2026 |
| Oracle_linux | — | Upgrade libssh-develUpgrade libsshUpgrade libssh-config | Dec 22, 2025 | Apr 26, 2025 |
| Redhat Openshift | — | Upgrade rhcos | Aug 10, 2026 | Apr 26, 2025 |
| Redhat_linux | — | No solution existsUpgrade libssh-develUpgrade libssh-debugsourceUpgrade libssh-configUpgrade libssh-debuginfoUpgrade libssh | Jul 9, 2025 | Jul 7, 2025 |
| Rocky_linux | — | Upgrade libssh-debuginfoUpgrade libssh-debugsourceUpgrade libssh-develUpgrade libssh | Feb 5, 2026 | Dec 18, 2025 |
| Suse | — | Upgrade libssh-configUpgrade libssh4Upgrade libssh-devel | Nov 5, 2025 | Aug 14, 2025 |
| Ubuntu | — | Upgrade libssh-4 | Jul 8, 2025 | Jun 25, 2025 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Sep 2, 2025 | Jul 7, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub