Known vulnerabilities in libssh-devel

Vendor: SUSE
Software: libssh-devel
Software CPE: cpe:2.3:o:suse:libssh-devel:*:*:*:*:*:suse_linux:*:*
Total vulnerabilities: 23
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting libssh-devel libssh-devel is affected by 23 known vulnerabilities: 3 high, 9 medium, 11 low Critical High Medium Low

Vulnerabilities (23)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU139533 - Use After Free
CVE-2026-59850
CWE-416 Low
No
No
0.9.8-150400.3.20.1, 0.9.8-150600.11.15.1 27.07.2026 SB20260727145
SB20260728153
SB2026080402
and 9 more
#VU139531 - Resource exhaustion
CVE-2026-59848
CWE-400 Low
No
No
0.9.8-150400.3.20.1, 0.9.8-150600.11.15.1 27.07.2026 SB20260727145
SB20260728153
SB2026080402
and 3 more
#VU139530 - Improper Validation of Integrity Check Value
CVE-2026-59847
CWE-354 Medium
No
No
0.9.8-150400.3.20.1, 0.9.8-150600.11.15.1 27.07.2026 SB20260727145
SB20260728153
SB2026080402
and 9 more
#VU139529 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2026-59846
CWE-78 Low
No
No
0.9.8-150400.3.20.1, 0.9.8-150600.11.15.1 27.07.2026 SB20260727145
SB20260728153
SB2026080402
and 3 more
#VU139527 - Improper input validation
CVE-2026-59844
CWE-20 Low
No
No
0.9.8-150400.3.20.1, 0.9.8-150600.11.15.1 27.07.2026 SB20260727145
SB20260728153
SB2026080402
and 8 more
#VU139526 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-59843
CWE-835 Low
No
No
0.9.8-150400.3.20.1, 0.9.8-150600.11.15.1 27.07.2026 SB20260727145
SB20260728153
SB2026080402
and 8 more
#VU139524 - Improper Check or Handling of Exceptional Conditions
CVE-2026-59845
CWE-703 Low
No
No
0.9.8-150400.3.20.1, 0.9.8-150600.11.15.1 27.07.2026 SB20260727145
SB20260728129
SB20260728153
and 9 more
#VU123156 - Out-of-bounds read
CVE-2026-0968
CWE-125 Medium
No
No
0.9.8-3.21.1, 0.9.8-150600.11.9.1 24.02.2026 SB2026022406
SB2026022408
SB2026022422
and 10 more
#VU123155 - Improper input validation
CVE-2026-0967
CWE-20 Low
No
No
0.9.8-3.21.1, 0.9.8-150600.11.9.1 24.02.2026 SB2026022406
SB2026022408
SB2026022422
and 10 more
#VU123154 - Buffer Underwrite ('Buffer Underflow')
CVE-2026-0966
CWE-124 Low
No
No
0.9.8-3.21.1, 0.9.8-150600.11.9.1 24.02.2026 SB2026022406
SB2026022408
SB2026022422
and 10 more
#VU123153 - Improper input validation
CVE-2026-0965
CWE-20 Low
No
No
0.9.8-3.21.1, 0.9.8-150600.11.9.1 24.02.2026 SB2026022406
SB2026022408
SB2026022422
and 9 more
#VU123151 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-0964
CWE-22 Medium
No
No
0.9.8-3.21.1, 0.9.8-150600.11.9.1 24.02.2026 SB2026022406
SB2026022408
SB2026022422
and 10 more
#VU115175 - Missing release of memory after effective lifetime
CVE-2025-8277
CWE-401 Medium
No
No
0.9.8-3.18.1, 0.9.8-150400.3.12.1, 0.9.8-150600.11.6.1 12.09.2025 SB2025091210
SB2025091219
SB2025091220
and 11 more
#VU115173 - NULL Pointer Dereference
CVE-2025-8114
CWE-476 Medium
No
No
0.9.8-3.18.1, 0.9.8-150400.3.12.1, 0.9.8-150600.11.6.1 12.09.2025 SB2025091208
SB2025091219
SB2025091220
and 12 more
#VU84540 - Unchecked Return Value
CVE-2023-6918
CWE-252 Low
No
No
0.9.8-3.12.2, 0.9.8-150200.13.3.1, 0.9.8-150400.3.3.1 19.12.2023 SB2023121906
SB2023121910
SB2023121911
and 63 more
#VU75741 - Improper input validation
CVE-2023-1667
CWE-20 Medium
No
No
0.9.8-3.12.2, 0.9.8-150200.13.3.1, 0.9.8-150400.3.3.1 04.05.2023 SB2023050456
SB2023050501
SB2023052441
and 75 more
#VU56217 - Memory corruption
CVE-2021-3634
CWE-119 High
No
No
0.9.8-3.12.2, 0.9.8-150200.13.3.1 31.08.2021 SB2021083135
SB2021083136
SB2022011903
and 46 more
#VU34008 - NULL Pointer Dereference
CVE-2020-16135
CWE-476 High
No
No
0.9.8-3.12.2, 0.9.8-150200.13.3.1 29.07.2020 SB2020072959
SB2020091120
SB2020110301
and 18 more
#VU26756 - Resource Management Errors
CVE-2020-1730
CWE-399 Medium
No
No
0.9.8-3.12.2, 0.9.8-150200.13.3.1 10.04.2020 SB2020041003
SB2020041004
SB2020041005
and 25 more
#VU23508 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2019-14889
CWE-78 Medium
No
No
0.9.8-3.12.2, 0.9.8-150200.13.3.1 11.12.2019 SB2019121035
SB2019121107
SB2019121701
and 21 more


Showing elements 1 - 20 out of 23