libssh kayıtları
libssh üreticisine ait 45 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %2,2
- Pre-auth RCE
- 5
- Düzeltme kaydı olan
- %97,8
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-476 NULL Pointer Dereference6
- CWE-399 Resource Management Errors3
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-125 Out-of-bounds Read2
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
45 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
64Bu hafta | CVE-2018-10933Silahlaştırılmış | A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4.libssh · libssh · CWE-592 | Kritik9,1 | — | %91,8 | 17 Eki 2018 |
51Planlayın | CVE-2023-48795Kavram kanıtı | The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypasssh · ssh · CWE-354 | Orta5,9 | — | %93,3 | 18 Ara 2023 |
36İzleyin | CVE-2019-14889İstismar yok | A flaw was found with the libssh API function ssh_scp_new() in versions before 0.9.3 and before 0.8.8.libssh · libssh · CWE-78 | Yüksek8,8 | — | %3,2 | 10 Ara 2019 |
35İzleyin | CVE-2026-59851İstismar yok | Libssh: libssh: authentication bypass via missing gssapi principal checklibssh · libssh · CWE-863 | Yüksek8,8 | — | %0,5 | 21 Tem 2026 |
35İzleyin | CVE-2025-5372İstismar yok | Libssh: incorrect return code handling in ssh_kdf() in libsshlibssh · libssh · CWE-682 | Yüksek8,8 | — | %0,5 | 4 Tem 2025 |
34İzleyin | CVE-2012-4562İstismar yok | Multiple integer overflows in libssh before 0.5.3 allow remote attackers to cause a denial of service (infinite loop or crash) and possibly libssh · libssh · CWE-189 | Yüksek7,5 | — | %12,8 | 30 Kas 2012 |
32İzleyin | CVE-2012-4560İstismar yok | Multiple buffer overflows in libssh before 0.5.3 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary clibssh · libssh · CWE-119 | Yüksek7,5 | — | %6,5 | 30 Kas 2012 |
32İzleyin | CVE-2025-5987İstismar yok | Libssh: invalid return code for chacha20 poly1305 with openssl backendlibssh · libssh · CWE-393 | Yüksek8,1 | — | %1,6 | 7 Tem 2025 |
32İzleyin | CVE-2026-0966İstismar yok | Libssh: libssh: denial of service via zero-length input in ssh_get_hexa()libssh · libssh · CWE-124 | Yüksek8,2 | — | %0,6 | 26 Mar 2026 |
31İzleyin | CVE-2015-3146İstismar yok | The (1) SSH_MSG_NEWKEYS and (2) SSH_MSG_KEXDH_REPLY packet handlers in package_cb.c in libssh before 0.6.5 do not properly validate state, wlibssh · libssh | Yüksek7,5 | — | %3,9 | 13 Nis 2016 |
31İzleyin | CVE-2012-6063İstismar yok | Double free vulnerability in the sftp_mkdir function in sftp.c in libssh before 0.5.3 allows remote attackers to cause a denial of service (libssh · libssh · CWE-399 | Yüksek7,5 | — | %3,6 | 30 Kas 2012 |
30İzleyin | CVE-2026-59850İstismar yok | Libssh: libssh: use-after-free via data callbacks on closed channelslibssh · libssh · CWE-416 | Yüksek7,5 | — | %0,6 | 21 Tem 2026 |
30İzleyin | CVE-2026-59847İstismar yok | Libssh: libssh: integrity downgrade via openssl aes-gcm tag verificationlibssh · libssh · CWE-253 | Yüksek7,5 | — | %0,6 | 21 Tem 2026 |
30İzleyin | CVE-2026-59849İstismar yok | Libssh: libssh: denial of service via automatic certificate authentication looplibssh · libssh · CWE-835 | Yüksek7,5 | — | %0,4 | 21 Tem 2026 |
29İzleyin | CVE-2012-4559İstismar yok | Multiple double free vulnerabilities in the (1) agent_sign_data function in agent.c, (2) channel_request function in channels.c, (3) ssh_uselibssh · libssh · CWE-399 | Orta6,8 | — | %5,2 | 30 Kas 2012 |
29İzleyin | CVE-2026-15370İstismar yok | Libssh: libssh: stack buffer overflow in sftp server longname constructionlibssh · libssh · CWE-121 | Yüksek7,3 | — | %0,2 | 21 Tem 2026 |
28İzleyin | CVE-2025-14821İstismar yok | Libssh: libssh: insecure default configuration leads to local man-in-the-middle attacks on windowslibssh · libssh · CWE-427 | Yüksek7,0 | — | %0,1 | 7 Nis 2026 |
27İzleyin | CVE-2021-3634İstismar yok | A flaw has been found in libssh in versions prior to 0.9.6.libssh · libssh · CWE-787 | Orta6,5 | — | %4,7 | 31 Ağu 2021 |
27İzleyin | CVE-2026-3731İstismar yok | libssh SFTP Extension Name sftp.c sftp_extensions_get_data out-of-boundslibssh · libssh · CWE-119 | Orta6,9 | — | %1,2 | 8 Mar 2026 |
26İzleyin | CVE-2023-1667İstismar yok | A NULL pointer dereference was found In libssh during re-keying with algorithm guessing.libssh · libssh · CWE-476 | Orta6,5 | — | %1,3 | 26 May 2023 |
26İzleyin | CVE-2023-2283İstismar yok | A vulnerability was found in libssh, where the authentication check of the connecting client can be bypassed in the`pki_verify_data_signaturlibssh · libssh · CWE-287 | Orta6,5 | — | %1,1 | 26 May 2023 |
26İzleyin | CVE-2023-3603İstismar yok | Processing sftp server read may cause null dereferencelibssh · libssh · CWE-476 | Orta6,5 | — | %0,9 | 21 Tem 2023 |
26İzleyin | CVE-2025-5449İstismar yok | Libssh: integer overflow in libssh sftp server packet length validation leading to denial of servicelibssh · libssh · CWE-190 | Orta6,5 | — | %0,9 | 25 Tem 2025 |
26İzleyin | CVE-2026-59843İstismar yok | Libssh: libssh: denial of service via zero advertised channel packet sizelibssh · libssh · CWE-835 | Orta6,5 | — | %0,7 | 21 Tem 2026 |
26İzleyin | CVE-2026-59844İstismar yok | Libssh: libssh: denial of service via oversized sftp read lengthlibssh · libssh · CWE-789 | Orta6,5 | — | %0,7 | 21 Tem 2026 |
- CVE-2018-1093364Bu hafta
A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4.
KritikCVSS 9,1SilahlaştırılmışEPSS %92libssh · libssh17 Eki 2018
- CVE-2023-4879551Planlayın
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypas
OrtaCVSS 5,9Kavram kanıtıEPSS %93ssh · ssh18 Ara 2023
- CVE-2019-1488936İzleyin
A flaw was found with the libssh API function ssh_scp_new() in versions before 0.9.3 and before 0.8.8.
YüksekCVSS 8,8İstismar yokEPSS %3libssh · libssh10 Ara 2019
- CVE-2026-5985135İzleyin
Libssh: libssh: authentication bypass via missing gssapi principal check
YüksekCVSS 8,8İstismar yokEPSS %0libssh · libssh21 Tem 2026
- CVE-2025-537235İzleyin
Libssh: incorrect return code handling in ssh_kdf() in libssh
YüksekCVSS 8,8İstismar yokEPSS %0libssh · libssh4 Tem 2025
- CVE-2012-456234İzleyin
Multiple integer overflows in libssh before 0.5.3 allow remote attackers to cause a denial of service (infinite loop or crash) and possibly
YüksekCVSS 7,5İstismar yokEPSS %13libssh · libssh30 Kas 2012
- CVE-2012-456032İzleyin
Multiple buffer overflows in libssh before 0.5.3 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary c
YüksekCVSS 7,5İstismar yokEPSS %6libssh · libssh30 Kas 2012
- CVE-2025-598732İzleyin
Libssh: invalid return code for chacha20 poly1305 with openssl backend
YüksekCVSS 8,1İstismar yokEPSS %2libssh · libssh7 Tem 2025
- CVE-2026-096632İzleyin
Libssh: libssh: denial of service via zero-length input in ssh_get_hexa()
YüksekCVSS 8,2İstismar yokEPSS %1libssh · libssh26 Mar 2026
- CVE-2015-314631İzleyin
The (1) SSH_MSG_NEWKEYS and (2) SSH_MSG_KEXDH_REPLY packet handlers in package_cb.c in libssh before 0.6.5 do not properly validate state, w
YüksekCVSS 7,5İstismar yokEPSS %4libssh · libssh13 Nis 2016
- CVE-2012-606331İzleyin
Double free vulnerability in the sftp_mkdir function in sftp.c in libssh before 0.5.3 allows remote attackers to cause a denial of service (
YüksekCVSS 7,5İstismar yokEPSS %4libssh · libssh30 Kas 2012
- CVE-2026-5985030İzleyin
Libssh: libssh: use-after-free via data callbacks on closed channels
YüksekCVSS 7,5İstismar yokEPSS %1libssh · libssh21 Tem 2026
- CVE-2026-5984730İzleyin
Libssh: libssh: integrity downgrade via openssl aes-gcm tag verification
YüksekCVSS 7,5İstismar yokEPSS %1libssh · libssh21 Tem 2026
- CVE-2026-5984930İzleyin
Libssh: libssh: denial of service via automatic certificate authentication loop
YüksekCVSS 7,5İstismar yokEPSS %0libssh · libssh21 Tem 2026
- CVE-2012-455929İzleyin
Multiple double free vulnerabilities in the (1) agent_sign_data function in agent.c, (2) channel_request function in channels.c, (3) ssh_use
OrtaCVSS 6,8İstismar yokEPSS %5libssh · libssh30 Kas 2012
- CVE-2026-1537029İzleyin
Libssh: libssh: stack buffer overflow in sftp server longname construction
YüksekCVSS 7,3İstismar yokEPSS %0libssh · libssh21 Tem 2026
- CVE-2025-1482128İzleyin
Libssh: libssh: insecure default configuration leads to local man-in-the-middle attacks on windows
YüksekCVSS 7,0İstismar yokEPSS %0libssh · libssh7 Nis 2026
- CVE-2021-363427İzleyin
A flaw has been found in libssh in versions prior to 0.9.6.
OrtaCVSS 6,5İstismar yokEPSS %5libssh · libssh31 Ağu 2021
- CVE-2026-373127İzleyin
libssh SFTP Extension Name sftp.c sftp_extensions_get_data out-of-bounds
OrtaCVSS 6,9İstismar yokEPSS %1libssh · libssh8 Mar 2026
- CVE-2023-166726İzleyin
A NULL pointer dereference was found In libssh during re-keying with algorithm guessing.
OrtaCVSS 6,5İstismar yokEPSS %1libssh · libssh26 May 2023
- CVE-2023-228326İzleyin
A vulnerability was found in libssh, where the authentication check of the connecting client can be bypassed in the`pki_verify_data_signatur
OrtaCVSS 6,5İstismar yokEPSS %1libssh · libssh26 May 2023
- CVE-2023-360326İzleyin
Processing sftp server read may cause null dereference
OrtaCVSS 6,5İstismar yokEPSS %1libssh · libssh21 Tem 2023
- CVE-2025-544926İzleyin
Libssh: integer overflow in libssh sftp server packet length validation leading to denial of service
OrtaCVSS 6,5İstismar yokEPSS %1libssh · libssh25 Tem 2025
- CVE-2026-5984326İzleyin
Libssh: libssh: denial of service via zero advertised channel packet size
OrtaCVSS 6,5İstismar yokEPSS %1libssh · libssh21 Tem 2026
- CVE-2026-5984426İzleyin
Libssh: libssh: denial of service via oversized sftp read length
OrtaCVSS 6,5İstismar yokEPSS %1libssh · libssh21 Tem 2026