[CLSA-2026:1778255025] libssh2: Fix of CVE-2026-7598
Type:
security
Severity:
Low
Release date:
2026-05-08 15:44:01 UTC
Description:
- CVE-2026-7598: integer overflow in userauth_password() and userauth_list() username_len allows out-of-bounds memory write - Skip mansyntax.sh test
Updated packages:
  • libssh2-1.4.3-12.amzn2.2.6.tuxcare.els1.i686.rpm
    sha:eaff535dac24d8028b1c2f9f8f5d59ca8156bd16ca5730eb90be467cef8ca543
  • libssh2-1.4.3-12.amzn2.2.6.tuxcare.els1.x86_64.rpm
    sha:30f89fe2067cfa407cd00329ae1cf03a011fa0b108dd4d70e27798f9f03b2a40
  • libssh2-devel-1.4.3-12.amzn2.2.6.tuxcare.els1.x86_64.rpm
    sha:a5077fff47ddb8869104b419b97c5b48a2806c2b0076f86a7ded63af2be3f317
  • libssh2-docs-1.4.3-12.amzn2.2.6.tuxcare.els1.noarch.rpm
    sha:e732c8dac29b5b6d1f14a418bed6c0f0ce7298b7267110129b433ef3f0596934
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.