PT-2025-42886 · Wolfssh · Wolfssh
Published
2025-10-21
·
Updated
2025-10-24
·
CVE-2025-11625
CVSS v2.0
10
Critical
| AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
wolfSSH versions prior to 1.4.20
Description
An improper host authentication issue exists in wolfSSH clients. This allows bypassing host authentication and potentially leaking client credentials.
Recommendations
Update wolfSSH to version 1.4.20 or later.
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Wolfssh