PT-2026-61948 · Libssh · Libssh

CVE-2026-59849

·

Published

2026-07-21

·

Updated

2026-08-31

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions libssh versions prior to 0.11.5-1.1
Description Logic errors in automatic certificate-based public key authentication can cause clients to loop indefinitely when configured certificates are missing or are repeatedly rejected by a server, resulting in a denial of service.
Recommendations Update to version 0.11.5-1.1.

Fix

DoS

Infinite Loop

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:55855
CVE-2026-59849
ECHO-273B-69EC-2249
OPENSUSE-SU-2026:11377-1
OPENSUSE-SU-2026:21444-1
RHSA-2026:42922
SUSE-SU-2026:22940-1
SUSE-SU-2026:22948-1
SUSE-SU-2026:22956-1
USN-8699-1

Affected Products

Libssh