PT-2026-41702 · Julia · Libssh2 Jll
Published
2026-05-08
·
Updated
2026-05-08
CVSS v3.1
7.3
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L |
A security vulnerability has been detected in libssh2 up to 1.11.1. The impacted element is the function
userauth password of the file src/userauth.c. Such manipulation of the argument username len/password len leads to integer overflow. The attack may be launched remotely. The name of the patch is 256d04b60d80bf1190e96b0ad1e91b2174d744b1. A patch should be applied to remediate this issue.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Libssh2 Jll