PT-2026-23936 · Libssh+3 · Libssh+3
Published
2025-12-11
·
Updated
2026-04-23
·
CVE-2026-3731
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
libssh versions up to 0.11.3
Description
A flaw exists in libssh related to the SFTP Extension Name Handler component, specifically within the
sftp extensions get name and sftp extensions get data functions in the src/sftp.c file. A manipulation of the idx argument can lead to an out-of-bounds read. This issue is potentially exploitable remotely.Recommendations
Upgrade to version 0.11.4 or 0.12.0.
Fix
DoS
Out of bounds Read
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linuxmint
Red Os
Ubuntu
Libssh