Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-48041

Опубликовано: 11 сент. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий

Описание

Allocation of Resources Without Limits or Throttling vulnerability in Erlang OTP ssh (ssh_sftp modules) allows Excessive Allocation, Flooding. This vulnerability is associated with program files lib/ssh/src/ssh_sftpd.erl. This issue affects OTP form OTP 17.0 until OTP 28.0.3, OTP 27.3.4.3 and 26.2.5.15 corresponding to ssh from 3.0.1 until 5.3.3, 5.2.11.3 and 5.1.4.12.

РелизСтатусПримечание
devel

needed

esm-infra-legacy/trusty

released

1:16.b.3-dfsg-1ubuntu2.2+esm1
esm-infra/bionic

released

1:20.2.2+dfsg-1ubuntu2+esm2
esm-infra/focal

released

1:22.2.7+dfsg-1ubuntu0.5+esm1
esm-infra/xenial

released

1:18.3-dfsg-1ubuntu3.1+esm2
jammy

released

1:24.2.1+dfsg-1ubuntu0.6
noble

released

1:25.3.2.8+dfsg-1ubuntu4.5
plucky

released

1:27.3+dfsg-1ubuntu1.3
questing

released

1:27.3.4.1+dfsg-1ubuntu0.1
upstream

released

1:27.3.4.3+dfsg-1

Показывать по

EPSS

Процентиль: 18%
0.00058
Низкий

Связанные уязвимости

CVSS3: 4.3
redhat
около 2 месяцев назад

Allocation of Resources Without Limits or Throttling vulnerability in Erlang OTP ssh (ssh_sftp modules) allows Excessive Allocation, Flooding. This vulnerability is associated with program files lib/ssh/src/ssh_sftpd.erl. This issue affects OTP form OTP 17.0 until OTP 28.0.3, OTP 27.3.4.3 and 26.2.5.15 corresponding to ssh from 3.0.1 until 5.3.3, 5.2.11.3 and 5.1.4.12.

nvd
около 2 месяцев назад

Allocation of Resources Without Limits or Throttling vulnerability in Erlang OTP ssh (ssh_sftp modules) allows Excessive Allocation, Flooding. This vulnerability is associated with program files lib/ssh/src/ssh_sftpd.erl. This issue affects OTP form OTP 17.0 until OTP 28.0.3, OTP 27.3.4.3 and 26.2.5.15 corresponding to ssh from 3.0.1 until 5.3.3, 5.2.11.3 and 5.1.4.12.

CVSS3: 7.5
msrc
около 2 месяцев назад

SSH_FXP_OPENDIR may Lead to Exhaustion of File Handles

debian
около 2 месяцев назад

Allocation of Resources Without Limits or Throttling vulnerability in ...

suse-cvrf
13 дней назад

Security update for erlang

EPSS

Процентиль: 18%
0.00058
Низкий