[ALSA-2025:20943] Moderate: libssh security update
Type:
security
Severity:
moderate
Release date:
2025-11-19
Description:
libssh is a library which implements the SSH protocol. It can be used to implement client and server applications. Security Fix(es): * libssh: out-of-bounds read in sftp_handle() (CVE-2025-5318) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 libssh-devel-0.10.4-15.el9_7.aarch64.rpm 0f695058daf4b88b3a33903ca0c2e759d9ea86142fdca531ed54b01971bfcdaf
aarch64 libssh-0.10.4-15.el9_7.aarch64.rpm f82945ffd5698a101730a69a9f087b9d0c40341f7edbabe0b0342de01547be8b
i686 libssh-devel-0.10.4-15.el9_7.i686.rpm 0ec7f0f15ce991d14fa97b50bb98f5df707b8b46b86dff8a91821598210493af
i686 libssh-0.10.4-15.el9_7.i686.rpm 6237496256dbf95e2e9361701eac1183a763db183c7ca133b2b8229e5518512f
noarch libssh-config-0.10.4-15.el9_7.noarch.rpm 4f6b50b82dc5bc30809f2ca6900f3494ec81e694370fa0530db7e37156a94079
ppc64le libssh-0.10.4-15.el9_7.ppc64le.rpm 327cce1ad22a9e7f78a27f6177c25ccd2a01f54bd972bcd3cb9755342820b670
ppc64le libssh-devel-0.10.4-15.el9_7.ppc64le.rpm 53c62f48234ce3826e6e7801fbbcba4096ee7b0ddcb602c0e47d9eba0c08af70
s390x libssh-devel-0.10.4-15.el9_7.s390x.rpm 0387728c7467aa854bb415e49bb15aa17cd4d10577cde1bb9dcf744f7193d072
s390x libssh-0.10.4-15.el9_7.s390x.rpm 5195c81b1739b12cb96cc7ce77402a6843cc877675501b8c94252bb59edab119
x86_64 libssh-0.10.4-15.el9_7.x86_64.rpm 281af7c8bacdac6f172bad496102d49fc2b47e35b6ee08800c0b0a7cb602168c
x86_64 libssh-devel-0.10.4-15.el9_7.x86_64.rpm 4118bf9026fa121d87abe57657c5842f9dc2987605d3c0f6bea45fadcd3169ec
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.