Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4h4r-q9xg-gfmm

Опубликовано: 21 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

A flaw was found in libssh. A malicious SFTP server can send responses for unknown request IDs that libssh clients keep queued indefinitely, causing unbounded memory growth and client-side denial of service.

A flaw was found in libssh. A malicious SFTP server can send responses for unknown request IDs that libssh clients keep queued indefinitely, causing unbounded memory growth and client-side denial of service.

EPSS

Процентиль: 22%
0.00295
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 5.3
ubuntu
12 дней назад

A flaw was found in libssh. A malicious SFTP server can send responses for unknown request IDs that libssh clients keep queued indefinitely, causing unbounded memory growth and client-side denial of service.

CVSS3: 5.3
redhat
12 дней назад

A flaw was found in libssh. A malicious SFTP server can send responses for unknown request IDs that libssh clients keep queued indefinitely, causing unbounded memory growth and client-side denial of service.

CVSS3: 5.3
nvd
12 дней назад

A flaw was found in libssh. A malicious SFTP server can send responses for unknown request IDs that libssh clients keep queued indefinitely, causing unbounded memory growth and client-side denial of service.

msrc
8 дней назад

Libssh: libssh: denial of service via sftp responses with unknown request ids

CVSS3: 5.3
debian
12 дней назад

A flaw was found in libssh. A malicious SFTP server can send responses ...

EPSS

Процентиль: 22%
0.00295
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-770