[CLSA-2026:1777939266] libssh: Fix of CVE-2026-0966
Type:
security
Severity:
Important
Release date:
2026-05-05 00:01:19 UTC
Description:
- CVE-2026-0966: fix heap buffer underflow in ssh_get_hexa() on NULL or zero-length input, remotely reachable via GSSAPI authentication logging
Updated packages:
  • libssh-0.9.4-3.el8.tuxcare.els9.i686.rpm
    sha:5da71cc16f3f1346becc7f47f14215b8e40b26d50c5cea327b17df5ea11dff40
  • libssh-0.9.4-3.el8.tuxcare.els9.x86_64.rpm
    sha:07818d5d7e90a3446ce18f308adbb7df0cd419e663e29297ce887aaff6e4b936
  • libssh-config-0.9.4-3.el8.tuxcare.els9.noarch.rpm
    sha:5bea8e975f218fb78a0f88faa370904f0920e87e9a1f9216370f25f375f5d7b8
  • libssh-devel-0.9.4-3.el8.tuxcare.els9.i686.rpm
    sha:c3d43038d74a63fe2445e7b0c412dbe8e4aadf7e310d78ae4b0b97185af7e747
  • libssh-devel-0.9.4-3.el8.tuxcare.els9.x86_64.rpm
    sha:89528f14bd1918c412b7192a14571518142218ab7056d4b9b42c7e5b5f47a703
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.