CyberRota Yorumu
Bellek tüketimine neden olabilir. Uzaktan istismar edilebilir olabilir.
CVE
CVE-2026-59842
Severity
LOW
CVSS
3.7
EPSS
Yok
Exchange
Orijinal NVD Açıklaması
A flaw was found in libssh. During server-side GSSAPI key exchange, a client-supplied Curve25519 public key shorter than the expected length is copied without proper length validation, leading to an out-of-bounds heap read. This could allow a remote unauthenticated attacker to disclose small amounts of server memory.