shield
Security update for libssh
SUSE-SLE-Micro-5.4-2026-1565
This update for libssh fixes the following issues: - CVE-2026-0964: improper sanitation of paths received from SCP servers can cause path traversal (bsc#1258049). - CVE-2026-0965: possible denial of service when parsing unexpected configuration files (bsc#1258045). - CVE-2026-0966: buffer underflow in ssh_get_hexa() on invalid input (bsc#1258054). - CVE-2026-0967: specially crafted patterns could cause denial of service (bsc#1258081). - CVE-2026-0968: malformed SFTP message can lead to out of bound read (bsc#1258080). - CVE-2026-3731: denial of service via out-of-bounds read in SFTP extension name handler (bsc#1259377).
-
Release DateApr 23 2026
-
ReferencesBugzilla: 1258054, 1258080, 1258049, 1258081, 1258045, 1259377
CVEs: CVE-2026-0968, CVE-2026-0964, CVE-2026-0967, CVE-2026-0965, CVE-2026-0966, CVE-2026-3731 -
Typesecurity
-
Severitymoderate
cloud_download Downloads
SUSE Linux Enterprise Micro 5.4 aarch64
-
Packageslibssh
The SSH librarylibssh-config0.9.8-150400.3.17.1 lock src
SSH library configuration fileslibssh40.9.8-150400.3.17.1 lock rpm
SSH library0.9.8-150400.3.17.1 lock rpm
SUSE Linux Enterprise Micro 5.4 x86_64
-
Packageslibssh
The SSH librarylibssh-config0.9.8-150400.3.17.1 lock src
SSH library configuration fileslibssh40.9.8-150400.3.17.1 lock rpm
SSH library0.9.8-150400.3.17.1 lock rpm
SUSE Linux Enterprise Micro 5.4 s390x
-
Packageslibssh
The SSH librarylibssh-config0.9.8-150400.3.17.1 lock src
SSH library configuration fileslibssh40.9.8-150400.3.17.1 lock rpm
SSH library0.9.8-150400.3.17.1 lock rpm