Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-0965

Опубликовано: 26 мар. 2026
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS3: 3.3

Описание

A flaw was found in libssh where it can attempt to open arbitrary files during configuration parsing. A local attacker can exploit this by providing a malicious configuration file or when the system is misconfigured. This vulnerability could lead to a Denial of Service (DoS) by causing the system to try and access dangerous files, such as block devices or large system files, which can disrupt normal operations.

РелизСтатусПримечание
devel

released

0.11.3-1ubuntu1
esm-infra-legacy/xenial

released

0.6.3-4.3ubuntu0.6+esm4
esm-infra/bionic

released

0.8.0~20170825.94fa1e38-1ubuntu0.7+esm6
esm-infra/focal

released

0.9.3-2ubuntu2.5+esm3
esm-infra/xenial

released

0.6.3-4.3ubuntu0.6+esm4
jammy

released

0.9.6-2ubuntu0.22.04.6
noble

released

0.10.6-2ubuntu0.3
questing

released

0.11.2-1ubuntu0.2
upstream

released

0.11.4

Показывать по

EPSS

Процентиль: 5%
0.00158
Низкий

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 3.3
redhat
6 месяцев назад

A flaw was found in libssh where it can attempt to open arbitrary files during configuration parsing. A local attacker can exploit this by providing a malicious configuration file or when the system is misconfigured. This vulnerability could lead to a Denial of Service (DoS) by causing the system to try and access dangerous files, such as block devices or large system files, which can disrupt normal operations.

CVSS3: 3.3
nvd
4 месяца назад

A flaw was found in libssh where it can attempt to open arbitrary files during configuration parsing. A local attacker can exploit this by providing a malicious configuration file or when the system is misconfigured. This vulnerability could lead to a Denial of Service (DoS) by causing the system to try and access dangerous files, such as block devices or large system files, which can disrupt normal operations.

CVSS3: 3.3
msrc
4 месяца назад

Libssh: libssh: denial of service via improper configuration file handling

CVSS3: 3.3
debian
4 месяца назад

A flaw was found in libssh where it can attempt to open arbitrary file ...

CVSS3: 3.3
github
4 месяца назад

A flaw was found in libssh where it can attempt to open arbitrary files during configuration parsing. A local attacker can exploit this by providing a malicious configuration file or when the system is misconfigured. This vulnerability could lead to a Denial of Service (DoS) by causing the system to try and access dangerous files, such as block devices or large system files, which can disrupt normal operations.

EPSS

Процентиль: 5%
0.00158
Низкий

3.3 Low

CVSS3