CyberRota
← Ana sayfaya dön

CVE-2026-59842

LOW · CVSS 3.7

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-07-21T12:18:57.727 · Çekilme zamanı: 2026-07-21T18:27:28.264633+00:00

CyberRota Yorumu

Bellek tüketimine neden olabilir. Uzaktan istismar edilebilir olabilir.

CVE
CVE-2026-59842
Severity
LOW
CVSS
3.7
EPSS
Yok
Exchange

Orijinal NVD Açıklaması

A flaw was found in libssh. During server-side GSSAPI key exchange, a client-supplied Curve25519 public key shorter than the expected length is copied without proper length validation, leading to an out-of-bounds heap read. This could allow a remote unauthenticated attacker to disclose small amounts of server memory.