[CLSA-2026:1778269628] libssh: Fix of CVE-2026-0964
Type:
security
Severity:
Moderate
Release date:
2026-05-08 19:47:14 UTC
Description:
- CVE-2026-0964: SCP path traversal via crafted filenames in ssh_scp_pull_request() allowing files to be written outside the intended directory
Updated packages:
  • libssh-0.10.4-15.el9_6.tuxcare.els7.i686.rpm
    sha:b16f8c7e3fbaabdbf9144e04794968bdc7d7358988bb5aebe217625fa3a38e54
  • libssh-0.10.4-15.el9_6.tuxcare.els7.x86_64.rpm
    sha:8088102aaee0012568ec655064255d953b479ac535828a8c824cf3492db25fca
  • libssh-config-0.10.4-15.el9_6.tuxcare.els7.noarch.rpm
    sha:5599a76d69858c0e1425a57d548431fd4cb57784274eb33097d1c8283c78505a
  • libssh-devel-0.10.4-15.el9_6.tuxcare.els7.i686.rpm
    sha:d5094b39063fefc4140c07983f4cce7e44d7911b0eda19e55a023645cee1fbda
  • libssh-devel-0.10.4-15.el9_6.tuxcare.els7.x86_64.rpm
    sha:3a1dfaf95a1732ceef786c35717b19a9d207a7e715f05405d267e7b29d7b3594
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.