[ALSA-2025:21013] Moderate: libssh security update
Type:
security
Severity:
moderate
Release date:
2025-11-24
Description:
libssh is a library which implements the SSH protocol. It can be used to implement client and server applications. Security Fix(es): * libssh: out-of-bounds read in sftp_handle() (CVE-2025-5318) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 libssh-devel-0.11.1-4.el10_1.aarch64.rpm 029da1222f58a686358bc125e7ff069cbda3021a0c20ebc96368335e91c1f574
aarch64 libssh-0.11.1-4.el10_1.aarch64.rpm 62d9c14c82963987119bc9cfedf55d4c95cef9b5da39bba42ebda81db6ca07d5
noarch libssh-config-0.11.1-4.el10_1.noarch.rpm 2a01a5576fcee6b03712a428ac114be2760d3af964651ed239dc94944f496191
ppc64le libssh-devel-0.11.1-4.el10_1.ppc64le.rpm 8891655a05b5f7ffdbb30549dcac2fc7d1487400b9b15bb2c2c47b718787f7ab
ppc64le libssh-0.11.1-4.el10_1.ppc64le.rpm 8a97286b680666c1450c578c13cfbdc17f505e06efa273cdce5b79b4ee251787
s390x libssh-0.11.1-4.el10_1.s390x.rpm 5f9b643489548fd7edf82cad56a822421b0b604c4f7f2ba04fbd34475346148c
s390x libssh-devel-0.11.1-4.el10_1.s390x.rpm a107ad43edcc494b1a72c9bccd363f6562f2e8cbe425a498b2452e367dfcb5a2
x86_64 libssh-0.11.1-4.el10_1.x86_64.rpm 0d4e5773190d5c4fa6e6fb3687ca8eb74d153f2094eb953f0bff5c4b6d016cdc
x86_64 libssh-devel-0.11.1-4.el10_1.x86_64.rpm 6b2884ee508a5234fa84e652dfabd932efaefb64886689b86d1cc7bd7d83e235
x86_64_v2 libssh-devel-0.11.1-4.el10_1.x86_64_v2.rpm 26d74cfe3996872793b6399b5264734227e83bae8fa9c4eb5a9a220b198790c9
x86_64_v2 libssh-0.11.1-4.el10_1.x86_64_v2.rpm d1d0155ef9e3490610ecc1d7af29b826aadae487730de4eb4b44077d1fee8962
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.