The RAND_bytes function in libssh before 0.6.3, when forking is enabled, does not properly reset the state of the OpenSSL pseudo-random number generator (PRNG), which causes the state to be shared between children processes and allows local users to obtain sensitive information by leveraging a pid collision.
CVSS Details
- CVSS 3.1 Base Score: 4
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade libssh | Jul 30, 2024 | Mar 14, 2014 |
| Freebsd | — | Upgrade libssh | Dec 10, 2025 | Oct 29, 2014 |
| Gentoo Linux | — | Upgrade net-libs/libssh. | Oct 30, 2017 | Mar 14, 2014 |
| Suse | — | Upgrade libssh4Upgrade libssh2Upgrade libssh-devel-docUpgrade libssh-develUpgrade libssh4-32bit | Dec 18, 2015 | Mar 14, 2014 |
| Ubuntu | — | Upgrade libssh-4 | Nov 8, 2024 | Mar 14, 2014 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub