[CLSA-2026:1778003186] libssh: Fix of CVE-2026-0966
Type:
security
Severity:
Important
Release date:
2026-05-05 17:46:30 UTC
Description:
- CVE-2026-0966: fix heap buffer underflow in ssh_get_hexa() on NULL or zero-length input, remotely reachable via GSSAPI authentication logging
Updated packages:
  • libssh-0.9.6-14.el8.tuxcare.els5.i686.rpm
    sha:e2527198715dc888035a6220693288283eb834fc1d8496db20403b73cd6a154b
  • libssh-0.9.6-14.el8.tuxcare.els5.x86_64.rpm
    sha:86a26aee7d2a35c8e767f51a494cabe700253c2b728d058b955431860cd4c403
  • libssh-config-0.9.6-14.el8.tuxcare.els5.noarch.rpm
    sha:e2dbbbe346df0a7c38a6a37ef3a9903481f46c2a729781dd51f258011471c292
  • libssh-devel-0.9.6-14.el8.tuxcare.els5.i686.rpm
    sha:11b3bc201366d3a5f6c4ce8b8547cb57d8132f2d16116a950c81b8d5fd953b30
  • libssh-devel-0.9.6-14.el8.tuxcare.els5.x86_64.rpm
    sha:8ad239b6ad6d3c0a4806d2c396bbc95e90649b90d8430259d72254c4485e54a6
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.