PT-2026-36550 · Libssh2+2 · Libssh2+2

·

CVE-2026-7598

·

Published

2026-05-01

·

Updated

2026-07-03

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions libssh2 versions prior to 1.11.2
Description An integer overflow exists in the userauth password() function within the src/userauth.c file. This issue occurs due to the incorrect handling of the username len and password len arguments during SSH password authentication. A remote attacker can exploit this flaw to potentially cause a denial of service.
Recommendations For versions prior to 1.11.2, apply patch 256d04b60d80bf1190e96b0ad1e91b2174d744b1. As a temporary workaround, restrict the use of the userauth password() function to minimize the risk of exploitation.

Exploit

Fix

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-7598
ECHO-E686-BEF9-6A8E
JLSEC-2026-492
OESA-2026-2336
OPENSUSE-SU-2026:11109-1
RHSA-2026:16736
RHSA-2026:7021
USN-8309-1

Affected Products

Linuxmint
Ubuntu
Libssh2