[CLSA-2026:1778490111] libssh: Fix of CVE-2026-0966
Type:
security
Severity:
Important
Release date:
2026-05-11 09:01:55 UTC
Description:
- CVE-2026-0966: fix heap buffer underflow in ssh_get_hexa() on NULL or zero-length input, remotely reachable via GSSAPI authentication logging
Updated packages:
  • libssh-0.10.4-15.el9_6.tuxcare.els5.i686.rpm
    sha:6dd6eba0ce000932810cda13985539ada855d69d73937fae372151f5a09794c9
  • libssh-0.10.4-15.el9_6.tuxcare.els5.x86_64.rpm
    sha:2cf1ee30633bb6be0a796221f058c73f74eb10d48100b8ce6082c55b4273c192
  • libssh-config-0.10.4-15.el9_6.tuxcare.els5.noarch.rpm
    sha:868b360b75ba3e1cd0a3015cf9789f8b65c1cbf68099c35afe56c958b7a955a7
  • libssh-devel-0.10.4-15.el9_6.tuxcare.els5.i686.rpm
    sha:dabfbca35e2718fe55c7c406cfdbc62c2c4e3218fb39e43d4b3dc5534ff3e1f8
  • libssh-devel-0.10.4-15.el9_6.tuxcare.els5.x86_64.rpm
    sha:bfdaf6bffd4d07ecb04f1e1782e980901b5b1b7604b6437644d44d5bf7d587a2
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.