Логотип exploitDog
bind:"GHSA-pwrf-jm93-99r3" OR bind:"CVE-2025-4877"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-pwrf-jm93-99r3" OR bind:"CVE-2025-4877"

Количество 12

Количество 12

github логотип

GHSA-pwrf-jm93-99r3

около 2 месяцев назад

There's a vulnerability in the libssh package where when a libssh consumer passes in an unexpectedly large input buffer to ssh_get_fingerprint_hash() function. In such cases the bin_to_base64() function can experience an integer overflow leading to a memory under allocation, when that happens it's possible that the program perform out of bounds write leading to a heap corruption. This issue affects only 32-bits builds of libssh.

CVSS3: 4.5
EPSS: Низкий
ubuntu логотип

CVE-2025-4877

около 2 месяцев назад

There's a vulnerability in the libssh package where when a libssh consumer passes in an unexpectedly large input buffer to ssh_get_fingerprint_hash() function. In such cases the bin_to_base64() function can experience an integer overflow leading to a memory under allocation, when that happens it's possible that the program perform out of bounds write leading to a heap corruption. This issue affects only 32-bits builds of libssh.

CVSS3: 4.5
EPSS: Низкий
redhat логотип

CVE-2025-4877

4 месяца назад

There's a vulnerability in the libssh package where when a libssh consumer passes in an unexpectedly large input buffer to ssh_get_fingerprint_hash() function. In such cases the bin_to_base64() function can experience an integer overflow leading to a memory under allocation, when that happens it's possible that the program perform out of bounds write leading to a heap corruption. This issue affects only 32-bits builds of libssh.

CVSS3: 4.5
EPSS: Низкий
nvd логотип

CVE-2025-4877

около 2 месяцев назад

There's a vulnerability in the libssh package where when a libssh consumer passes in an unexpectedly large input buffer to ssh_get_fingerprint_hash() function. In such cases the bin_to_base64() function can experience an integer overflow leading to a memory under allocation, when that happens it's possible that the program perform out of bounds write leading to a heap corruption. This issue affects only 32-bits builds of libssh.

CVSS3: 4.5
EPSS: Низкий
debian логотип

CVE-2025-4877

около 2 месяцев назад

There's a vulnerability in the libssh package where when a libssh cons ...

CVSS3: 4.5
EPSS: Низкий
fstec логотип

BDU:2025-07641

6 месяцев назад

Уязвимость функции ssh_get_fingerprint_hash() библиотеки libssh, позволяющая нарушителю выполнить произвольный код

CVSS3: 4.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02755-1

2 месяца назад

Security update for libssh

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02281-1

3 месяца назад

Security update for libssh

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02279-1

3 месяца назад

Security update for libssh

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02278-1

3 месяца назад

Security update for libssh

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02229-1

3 месяца назад

Security update for libssh

EPSS: Низкий
redos логотип

ROS-20250924-09

23 дня назад

Множественные уязвимости libssh

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-pwrf-jm93-99r3

There's a vulnerability in the libssh package where when a libssh consumer passes in an unexpectedly large input buffer to ssh_get_fingerprint_hash() function. In such cases the bin_to_base64() function can experience an integer overflow leading to a memory under allocation, when that happens it's possible that the program perform out of bounds write leading to a heap corruption. This issue affects only 32-bits builds of libssh.

CVSS3: 4.5
0%
Низкий
около 2 месяцев назад
ubuntu логотип
CVE-2025-4877

There's a vulnerability in the libssh package where when a libssh consumer passes in an unexpectedly large input buffer to ssh_get_fingerprint_hash() function. In such cases the bin_to_base64() function can experience an integer overflow leading to a memory under allocation, when that happens it's possible that the program perform out of bounds write leading to a heap corruption. This issue affects only 32-bits builds of libssh.

CVSS3: 4.5
0%
Низкий
около 2 месяцев назад
redhat логотип
CVE-2025-4877

There's a vulnerability in the libssh package where when a libssh consumer passes in an unexpectedly large input buffer to ssh_get_fingerprint_hash() function. In such cases the bin_to_base64() function can experience an integer overflow leading to a memory under allocation, when that happens it's possible that the program perform out of bounds write leading to a heap corruption. This issue affects only 32-bits builds of libssh.

CVSS3: 4.5
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-4877

There's a vulnerability in the libssh package where when a libssh consumer passes in an unexpectedly large input buffer to ssh_get_fingerprint_hash() function. In such cases the bin_to_base64() function can experience an integer overflow leading to a memory under allocation, when that happens it's possible that the program perform out of bounds write leading to a heap corruption. This issue affects only 32-bits builds of libssh.

CVSS3: 4.5
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2025-4877

There's a vulnerability in the libssh package where when a libssh cons ...

CVSS3: 4.5
0%
Низкий
около 2 месяцев назад
fstec логотип
BDU:2025-07641

Уязвимость функции ssh_get_fingerprint_hash() библиотеки libssh, позволяющая нарушителю выполнить произвольный код

CVSS3: 4.5
0%
Низкий
6 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:02755-1

Security update for libssh

2 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02281-1

Security update for libssh

3 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02279-1

Security update for libssh

3 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02278-1

Security update for libssh

3 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02229-1

Security update for libssh

3 месяца назад
redos логотип
ROS-20250924-09

Множественные уязвимости libssh

CVSS3: 6.5
23 дня назад

Уязвимостей на страницу