shield
Security update for libssh
SUSE-SL-Micro-6.2-655
This update for libssh fixes the following issues: - Update to version 0.11.4: - CVE-2026-0964: SCP Protocol Path Traversal in ssh_scp_pull_request() (bsc#1258049) - CVE-2026-0965: Possible Denial of Service when parsing unexpected configuration files (bsc#1258045) - CVE-2026-0966: Buffer underflow in ssh_get_hexa() on invalid input (bsc#1258054) - CVE-2026-0967: Specially crafted patterns could cause DoS (bsc#1258081) - CVE-2026-0968: OOB Read in sftp_parse_longname() (bsc#1258080) - CVE-2025-8114: Fix NULL pointer dereference after allocation failure (bsc#1246974) - CVE-2025-8277: Fix memory leak of ephemeral key pair during repeated wrong KEX (bsc#1249375)
-
Release DateApr 30 2026
-
ReferencesBugzilla: 1258045, 1258054, 1258081, 1246974, 1249375, 1258049, 1258080
CVEs: CVE-2026-0968, CVE-2025-8277, CVE-2026-0967, CVE-2026-0965, CVE-2025-8114, CVE-2026-0964, CVE-2026-0966 -
Typesecurity
-
Severitymoderate
cloud_download Downloads
SUSE Linux Micro 6.2 ppc64le
-
Packageslibssh-config
SSH library configuration fileslibssh40.11.4-160000.1.1 lock rpm
SSH library0.11.4-160000.1.1 lock rpm
SUSE Linux Micro 6.2 s390x
-
Packageslibssh-config
SSH library configuration fileslibssh40.11.4-160000.1.1 lock rpm
SSH library0.11.4-160000.1.1 lock rpm
SUSE Linux Micro 6.2 aarch64
-
Packageslibssh-config
SSH library configuration fileslibssh40.11.4-160000.1.1 lock rpm
SSH library0.11.4-160000.1.1 lock rpm
SUSE Linux Micro 6.2 x86_64
-
Packageslibssh-config
SSH library configuration fileslibssh40.11.4-160000.1.1 lock rpm
SSH library0.11.4-160000.1.1 lock rpm