shield Security update for libssh
SUSE-SLE-Micro-6.0-834


This update for libssh fixes the following issues: - CVE-2026-3731: denial of Service via out-of-bounds read in SFTP extension name handler (bsc#1259377). - CVE-2026-59843: denial of service via zero advertised channel packet size (bsc#1272164). - CVE-2026-59844: denial of service via oversized SFTP read length (bsc#1272165). - CVE-2026-59845: denial of service via unchecked ProxyCommand fork() failure (bsc#1272166). - CVE-2026-59846: information disclosure via ProxyCommand %r username expansion (bsc#1272167). - CVE-2026-59847: integrity downgrade via OpenSSL AES-GCM tag verification (bsc#1272168). - CVE-2026-59848: denial of service via SFTP responses with unknown request IDs (bsc#1272169). - CVE-2026-59850: use-after-free via data callbacks on closed channels (bsc#1272171).


cloud_download Downloads

SUSE Linux Micro 6.0 s390x
  • Packages
    libssh-config
    SSH library configuration files
    0.10.6-5.1 lock rpm
    libssh4
    SSH library
    0.10.6-5.1 lock rpm
SUSE Linux Micro 6.0 aarch64
  • Packages
    libssh-config
    SSH library configuration files
    0.10.6-5.1 lock rpm
    libssh4
    SSH library
    0.10.6-5.1 lock rpm
SUSE Linux Micro 6.0 x86_64
  • Packages
    libssh-config
    SSH library configuration files
    0.10.6-5.1 lock rpm
    libssh4
    SSH library
    0.10.6-5.1 lock rpm