Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-48040

Опубликовано: 11 сент. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий

Описание

Uncontrolled Resource Consumption vulnerability in Erlang OTP ssh (ssh_sftp modules) allows Excessive Allocation, Flooding. This vulnerability is associated with program files lib/ssh/src/ssh_sftpd.erl. This issue affects OTP from OTP 17.0 before OTP 28.0.3, OTP 27.3.4.3 and OTP 26.2.5.15, corresponding to ssh from 3.0.1 before 5.3.3, 5.2.11.3 and 5.1.4.12.

РелизСтатусПримечание
devel

released

1:27.3.4.3+dfsg-1
esm-infra-legacy/trusty

ignored

changes too intrusive
esm-infra-legacy/xenial

ignored

changes too intrusive
esm-infra/bionic

ignored

changes too intrusive
esm-infra/focal

ignored

changes too intrusive
esm-infra/xenial

ignored

end of ESM support, was ignored [changes too intrusive]
jammy

released

1:24.2.1+dfsg-1ubuntu0.6
noble

released

1:25.3.2.8+dfsg-1ubuntu4.5
plucky

released

1:27.3+dfsg-1ubuntu1.3
questing

released

1:27.3.4.1+dfsg-1ubuntu0.1

Показывать по

EPSS

Процентиль: 33%
0.00402
Низкий

Связанные уязвимости

CVSS3: 5.3
redhat
11 месяцев назад

Uncontrolled Resource Consumption vulnerability in Erlang OTP ssh (ssh_sftp modules) allows Excessive Allocation, Flooding. This vulnerability is associated with program files lib/ssh/src/ssh_sftpd.erl. This issue affects OTP from OTP 17.0 before OTP 28.0.3, OTP 27.3.4.3 and OTP 26.2.5.15, corresponding to ssh from 3.0.1 before 5.3.3, 5.2.11.3 and 5.1.4.12.

nvd
11 месяцев назад

Uncontrolled Resource Consumption vulnerability in Erlang OTP ssh (ssh_sftp modules) allows Excessive Allocation, Flooding. This vulnerability is associated with program files lib/ssh/src/ssh_sftpd.erl. This issue affects OTP from OTP 17.0 before OTP 28.0.3, OTP 27.3.4.3 and OTP 26.2.5.15, corresponding to ssh from 3.0.1 before 5.3.3, 5.2.11.3 and 5.1.4.12.

CVSS3: 5.3
msrc
11 месяцев назад

Malicious Key Exchange Messages may Lead to Excessive Resource Consumption

debian
11 месяцев назад

Uncontrolled Resource Consumption vulnerability in Erlang OTP ssh (ssh ...

CVSS3: 5.3
fstec
11 месяцев назад

Уязвимость набора библиотек OTP языка программирования Erlang, связанная с неконтролируемой рекурсией, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 33%
0.00402
Низкий
Уязвимость CVE-2025-48040