Libssh2 / Libssh2
25 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-66035 | libssh2 Heap Buffer Overflow via ETM Cipher Negotiation | HIGH | 7.7 | Jul 24, 2026 |
| CVE-2026-66034 | libssh2 Heap Out-of-Bounds Read via publickey subsystem | HIGH | 7.7 | Jul 24, 2026 |
| CVE-2026-66033 | libssh2 Integer Underflow DoS via AES-GCM Cipher Negotiation | HIGH | 8.7 | Jul 24, 2026 |
| CVE-2026-66032 | libssh2 Double-Free Heap Corruption via sftp_open() | HIGH | 8.7 | Jul 24, 2026 |
| CVE-2026-58051 | libssh2 - Free of Uninitialized Pointer in publickey List Cleanup | HIGH | 8.3 | Jun 28, 2026 |
| CVE-2026-58050 | libssh2 - Integer Overflow in publickey Subsystem Attribute Allocation | HIGH | 8.3 | Jun 28, 2026 |
| CVE-2025-15661 | libssh2 - Heap Buffer Over-read via sftp_symlink() in sftp.c | HIGH | 8.3 | Jun 18, 2026 |
| CVE-2026-55200 | libssh2 - Out-of-Bounds Write via Unchecked packet_length in transport.c | CRITICAL | 9.2 | Jun 17, 2026 |
| CVE-2026-55199 | libssh2 - Pre-Authentication DoS via SSH_MSG_EXT_INFO Handler | HIGH | 8.2 | Jun 17, 2026 |
| CVE-2026-7598 | libssh2 userauth.c userauth_password integer overflow | MEDIUM | 6.9 | May 1, 2026 |
| CVE-2023-48795 | ssh: Prefix truncation attack on Binary Packet Protocol (BPP) | MEDIUM | 5.9 | Dec 18, 2023 |
| CVE-2020-22218 | libssh2: use-of-uninitialized-value in _libssh2_transport_read | HIGH | 7.5 | Aug 22, 2023 |
| CVE-2019-17498 | libssh2: integer overflow in SSH_MSG_DISCONNECT logic in packet.c | HIGH | 8.1 | Oct 21, 2019 |
| CVE-2019-13115 | libssh2: integer overflow in kex_method_diffie_hellman_group_exchange_sha256_key_exchange in kex.c leads to out-of-bounds write | HIGH | 8.1 | Jul 16, 2019 |
| CVE-2019-3856 | libssh2: Integer overflow in keyboard interactive handling resulting in out of bounds write | HIGH | 8.8 | Mar 25, 2019 |
| CVE-2019-3857 | libssh2: Integer overflow in SSH packet processing channel resulting in out of bounds write | HIGH | 8.8 | Mar 25, 2019 |
| CVE-2019-3860 | libssh2: Out-of-bounds reads with specially crafted SFTP packets | CRITICAL | 9.1 | Mar 25, 2019 |
| CVE-2019-3861 | libssh2: Out-of-bounds reads with specially crafted SSH packets | CRITICAL | 9.1 | Mar 25, 2019 |
| CVE-2019-3863 | libssh2: Integer overflow in user authenticate keyboard interactive allows out-of-bounds writes | HIGH | 8.8 | Mar 25, 2019 |
| CVE-2019-3858 | libssh2: Zero-byte allocation with a specially crafted SFTP packed leading to an out-of-bounds read | CRITICAL | 9.1 | Mar 21, 2019 |
| CVE-2019-3855 | libssh2: Integer overflow in transport read resulting in out of bounds write | HIGH | 8.8 | Mar 21, 2019 |
| CVE-2019-3862 | libssh2: Out-of-bounds memory comparison with specially crafted message channel request | CRITICAL | 9.1 | Mar 20, 2019 |
| CVE-2019-3859 | libssh2: Unchecked use of _libssh2_packet_require and _libssh2_packet_requirev resulting in out-of-bounds read | CRITICAL | 9.1 | Mar 20, 2019 |
| CVE-2016-0787 | libssh2: bits/bytes confusion resulting in truncated Diffie-Hellman secret length | MEDIUM | 5.9 | Apr 13, 2016 |
| CVE-2015-1782 | libssh2: Using SSH_MSG_KEXINIT data unbounded | MEDIUM | 6.8 | Mar 13, 2015 |
Showing 1 to 25 of 25 CVEs