[ALSA-2025:18275] Moderate: libssh security update
Type:
security
Severity:
moderate
Release date:
2025-10-17
Description:
libssh is a library which implements the SSH protocol. It can be used to implement client and server applications. Security Fix(es): * libssh: out-of-bounds read in sftp_handle() (CVE-2025-5318) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 libssh-0.10.4-15.el9_6.aarch64.rpm 9d11c391a35c2654420da5770e42d16d59bb60800968415202553b76ca104e84
aarch64 libssh-devel-0.10.4-15.el9_6.aarch64.rpm fe7a46e97b8d1da6a722566ac6e19de634c83b3b11931770ece2ca9738985326
i686 libssh-devel-0.10.4-15.el9_6.i686.rpm 2bae6a9926c3f9da248ed855f09d05aa5654fc9c8e526a5f6fefabf2309623f6
i686 libssh-0.10.4-15.el9_6.i686.rpm 919bc9a6918b489abd8d0726e24040891ac167e4bcd819a4ab674b81742be1b4
noarch libssh-config-0.10.4-15.el9_6.noarch.rpm 1608de2b893235495977bb972a9f975c6a743247301da12c536a04419316ad27
ppc64le libssh-devel-0.10.4-15.el9_6.ppc64le.rpm 873c401bcb367516a710d8c7b5d434f4cd7e708aa2c84a5c91bc1f28d5fa9051
ppc64le libssh-0.10.4-15.el9_6.ppc64le.rpm b15b6ff2b83a333d353a6aeef3f5f0c87b0f4ced9caf94e11d26569136b9e5b0
s390x libssh-0.10.4-15.el9_6.s390x.rpm 5645440b4a8f8fb869edbb7fa8c31fb14ed07264c0cc80d389d004441d7d490e
s390x libssh-devel-0.10.4-15.el9_6.s390x.rpm c68ac1762d421c605a76278cde4142df56fc387f36ca172c259006aef43c6942
x86_64 libssh-0.10.4-15.el9_6.x86_64.rpm 0dca2062dd5af2b0320b7e364056828d672ad4794819d30a69563b36d5bde129
x86_64 libssh-devel-0.10.4-15.el9_6.x86_64.rpm fc7876b9b6b8aefc45c6bdf227d3b9ceba9062d889f49fb632c1ac17fb0f91c6
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.