Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 22

Количество 22

github логотип

GHSA-98qw-prqm-9f4p

около 1 года назад

A flaw was found in the libssh library. An out-of-bounds read can be triggered in the sftp_handle function due to an incorrect comparison check that permits the function to access memory beyond the valid handle list and to return an invalid pointer, which is used in further processing. This vulnerability allows an authenticated remote attacker to potentially read unintended memory regions, exposing sensitive information or affect service behavior.

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2025-5318

около 1 года назад

A flaw was found in the libssh library in versions less than 0.11.2. An out-of-bounds read can be triggered in the sftp_handle function due to an incorrect comparison check that permits the function to access memory beyond the valid handle list and to return an invalid pointer, which is used in further processing. This vulnerability allows an authenticated remote attacker to potentially read unintended memory regions, exposing sensitive information or affect service behavior.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2025-5318

около 1 года назад

A flaw was found in the libssh library in versions less than 0.11.2. An out-of-bounds read can be triggered in the sftp_handle function due to an incorrect comparison check that permits the function to access memory beyond the valid handle list and to return an invalid pointer, which is used in further processing. This vulnerability allows an authenticated remote attacker to potentially read unintended memory regions, exposing sensitive information or affect service behavior.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2025-5318

около 1 года назад

A flaw was found in the libssh library in versions less than 0.11.2. An out-of-bounds read can be triggered in the sftp_handle function due to an incorrect comparison check that permits the function to access memory beyond the valid handle list and to return an invalid pointer, which is used in further processing. This vulnerability allows an authenticated remote attacker to potentially read unintended memory regions, exposing sensitive information or affect service behavior.

CVSS3: 8.1
EPSS: Низкий
msrc логотип

CVE-2025-5318

около 1 года назад

Libssh: out-of-bounds read in sftp_handle()

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2025-5318

около 1 года назад

A flaw was found in the libssh library in versions less than 0.11.2. A ...

CVSS3: 8.1
EPSS: Низкий
rocky логотип

RLSA-2025:20943

9 месяцев назад

Moderate: libssh security update

EPSS: Низкий
rocky логотип

RLSA-2025:18286

8 месяцев назад

Moderate: libssh security update

EPSS: Низкий
rocky логотип

RLSA-2025:18275

10 месяцев назад

Moderate: libssh security update

EPSS: Низкий
rocky логотип

RLSA-2025:18231

10 месяцев назад

Moderate: libssh security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-21013

8 месяцев назад

ELSA-2025-21013: libssh security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-20943

8 месяцев назад

ELSA-2025-20943: libssh security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-18286

10 месяцев назад

ELSA-2025-18286: libssh security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-18275

10 месяцев назад

ELSA-2025-18275: libssh security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-18231

10 месяцев назад

ELSA-2025-18231: libssh security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2025-09008

около 1 года назад

Уязвимость функции sftp_handle() библиотеки LibSSH, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.4
EPSS: Низкий
redos логотип

ROS-20250724-10

около 1 года назад

Уязвимость libssh

CVSS3: 5.4
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02755-1

12 месяцев назад

Security update for libssh

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02281-1

около 1 года назад

Security update for libssh

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02279-1

около 1 года назад

Security update for libssh

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-98qw-prqm-9f4p

A flaw was found in the libssh library. An out-of-bounds read can be triggered in the sftp_handle function due to an incorrect comparison check that permits the function to access memory beyond the valid handle list and to return an invalid pointer, which is used in further processing. This vulnerability allows an authenticated remote attacker to potentially read unintended memory regions, exposing sensitive information or affect service behavior.

CVSS3: 5.4
2%
Низкий
около 1 года назад
ubuntu логотип
CVE-2025-5318

A flaw was found in the libssh library in versions less than 0.11.2. An out-of-bounds read can be triggered in the sftp_handle function due to an incorrect comparison check that permits the function to access memory beyond the valid handle list and to return an invalid pointer, which is used in further processing. This vulnerability allows an authenticated remote attacker to potentially read unintended memory regions, exposing sensitive information or affect service behavior.

CVSS3: 8.1
2%
Низкий
около 1 года назад
redhat логотип
CVE-2025-5318

A flaw was found in the libssh library in versions less than 0.11.2. An out-of-bounds read can be triggered in the sftp_handle function due to an incorrect comparison check that permits the function to access memory beyond the valid handle list and to return an invalid pointer, which is used in further processing. This vulnerability allows an authenticated remote attacker to potentially read unintended memory regions, exposing sensitive information or affect service behavior.

CVSS3: 8.1
2%
Низкий
около 1 года назад
nvd логотип
CVE-2025-5318

A flaw was found in the libssh library in versions less than 0.11.2. An out-of-bounds read can be triggered in the sftp_handle function due to an incorrect comparison check that permits the function to access memory beyond the valid handle list and to return an invalid pointer, which is used in further processing. This vulnerability allows an authenticated remote attacker to potentially read unintended memory regions, exposing sensitive information or affect service behavior.

CVSS3: 8.1
2%
Низкий
около 1 года назад
msrc логотип
CVE-2025-5318

Libssh: out-of-bounds read in sftp_handle()

CVSS3: 5.4
2%
Низкий
около 1 года назад
debian логотип
CVE-2025-5318

A flaw was found in the libssh library in versions less than 0.11.2. A ...

CVSS3: 8.1
2%
Низкий
около 1 года назад
rocky логотип
RLSA-2025:20943

Moderate: libssh security update

2%
Низкий
9 месяцев назад
rocky логотип
RLSA-2025:18286

Moderate: libssh security update

2%
Низкий
8 месяцев назад
rocky логотип
RLSA-2025:18275

Moderate: libssh security update

2%
Низкий
10 месяцев назад
rocky логотип
RLSA-2025:18231

Moderate: libssh security update

2%
Низкий
10 месяцев назад
oracle-oval логотип
ELSA-2025-21013

ELSA-2025-21013: libssh security update (MODERATE)

2%
Низкий
8 месяцев назад
oracle-oval логотип
ELSA-2025-20943

ELSA-2025-20943: libssh security update (MODERATE)

2%
Низкий
8 месяцев назад
oracle-oval логотип
ELSA-2025-18286

ELSA-2025-18286: libssh security update (MODERATE)

2%
Низкий
10 месяцев назад
oracle-oval логотип
ELSA-2025-18275

ELSA-2025-18275: libssh security update (MODERATE)

2%
Низкий
10 месяцев назад
oracle-oval логотип
ELSA-2025-18231

ELSA-2025-18231: libssh security update (MODERATE)

2%
Низкий
10 месяцев назад
fstec логотип
BDU:2025-09008

Уязвимость функции sftp_handle() библиотеки LibSSH, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.4
2%
Низкий
около 1 года назад
redos логотип
ROS-20250724-10

Уязвимость libssh

CVSS3: 5.4
2%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:02755-1

Security update for libssh

12 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:02281-1

Security update for libssh

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:02279-1

Security update for libssh

около 1 года назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.