Логотип exploitDog
bind:"CVE-2025-5987"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-5987"

Количество 12

Количество 12

ubuntu логотип

CVE-2025-5987

6 месяцев назад

A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a partially initialized cipher context. This occurs because the OpenSSL error code returned aliases with the SSH_OK code, resulting in libssh not properly detecting the error returned by the OpenSSL library. This issue can lead to undefined behavior, including compromised data confidentiality and integrity or crashes.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2025-5987

9 месяцев назад

A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a partially initialized cipher context. This occurs because the OpenSSL error code returned aliases with the SSH_OK code, resulting in libssh not properly detecting the error returned by the OpenSSL library. This issue can lead to undefined behavior, including compromised data confidentiality and integrity or crashes.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2025-5987

6 месяцев назад

A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a partially initialized cipher context. This occurs because the OpenSSL error code returned aliases with the SSH_OK code, resulting in libssh not properly detecting the error returned by the OpenSSL library. This issue can lead to undefined behavior, including compromised data confidentiality and integrity or crashes.

CVSS3: 8.1
EPSS: Низкий
msrc логотип

CVE-2025-5987

6 месяцев назад

Libssh: invalid return code for chacha20 poly1305 with openssl backend

CVSS3: 5
EPSS: Низкий
debian логотип

CVE-2025-5987

6 месяцев назад

A flaw was found in libssh when using the ChaCha20 cipher with the Ope ...

CVSS3: 8.1
EPSS: Низкий
rocky логотип

RLSA-2025:23484

28 дней назад

Moderate: libssh security update

EPSS: Низкий
rocky логотип

RLSA-2025:23483

27 дней назад

Moderate: libssh security update

EPSS: Низкий
github логотип

GHSA-3pvj-q7qj-89fg

6 месяцев назад

A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a partially initialized cipher context. This occurs because the OpenSSL error code returned aliases with the SSH_OK code, resulting in libssh not properly detecting the error returned by the OpenSSL library. This issue can lead to undefined behavior, including compromised data confidentiality and integrity or crashes.

CVSS3: 5
EPSS: Низкий
oracle-oval логотип

ELSA-2025-23484

30 дней назад

ELSA-2025-23484: libssh security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-23483

29 дней назад

ELSA-2025-23483: libssh security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2025-07640

8 месяцев назад

Уязвимость функции chacha20_poly1305_set_key() библиотеки libssh, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 5
EPSS: Низкий
redos логотип

ROS-20250924-09

4 месяца назад

Множественные уязвимости libssh

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-5987

A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a partially initialized cipher context. This occurs because the OpenSSL error code returned aliases with the SSH_OK code, resulting in libssh not properly detecting the error returned by the OpenSSL library. This issue can lead to undefined behavior, including compromised data confidentiality and integrity or crashes.

CVSS3: 8.1
0%
Низкий
6 месяцев назад
redhat логотип
CVE-2025-5987

A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a partially initialized cipher context. This occurs because the OpenSSL error code returned aliases with the SSH_OK code, resulting in libssh not properly detecting the error returned by the OpenSSL library. This issue can lead to undefined behavior, including compromised data confidentiality and integrity or crashes.

CVSS3: 5
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-5987

A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a partially initialized cipher context. This occurs because the OpenSSL error code returned aliases with the SSH_OK code, resulting in libssh not properly detecting the error returned by the OpenSSL library. This issue can lead to undefined behavior, including compromised data confidentiality and integrity or crashes.

CVSS3: 8.1
0%
Низкий
6 месяцев назад
msrc логотип
CVE-2025-5987

Libssh: invalid return code for chacha20 poly1305 with openssl backend

CVSS3: 5
0%
Низкий
6 месяцев назад
debian логотип
CVE-2025-5987

A flaw was found in libssh when using the ChaCha20 cipher with the Ope ...

CVSS3: 8.1
0%
Низкий
6 месяцев назад
rocky логотип
RLSA-2025:23484

Moderate: libssh security update

0%
Низкий
28 дней назад
rocky логотип
RLSA-2025:23483

Moderate: libssh security update

0%
Низкий
27 дней назад
github логотип
GHSA-3pvj-q7qj-89fg

A flaw was found in libssh when using the ChaCha20 cipher with the OpenSSL library. If an attacker manages to exhaust the heap space, this error is not detected and may lead to libssh using a partially initialized cipher context. This occurs because the OpenSSL error code returned aliases with the SSH_OK code, resulting in libssh not properly detecting the error returned by the OpenSSL library. This issue can lead to undefined behavior, including compromised data confidentiality and integrity or crashes.

CVSS3: 5
0%
Низкий
6 месяцев назад
oracle-oval логотип
ELSA-2025-23484

ELSA-2025-23484: libssh security update (MODERATE)

30 дней назад
oracle-oval логотип
ELSA-2025-23483

ELSA-2025-23483: libssh security update (MODERATE)

29 дней назад
fstec логотип
BDU:2025-07640

Уязвимость функции chacha20_poly1305_set_key() библиотеки libssh, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 5
0%
Низкий
8 месяцев назад
redos логотип
ROS-20250924-09

Множественные уязвимости libssh

CVSS3: 6.5
4 месяца назад

Уязвимостей на страницу