* bsc#1245309 * bsc#1245310 * bsc#1245311 * bsc#1245314 . # Security update for libssh Announcement ID: SUSE-SU-2025:02229-1 Release Date: 2025-07-04T16:02:38Z Rating: important References: * bsc#1245309 * bsc#1245310 * bsc#1245311 * bsc#1245314 Cross-References: * CVE-2025-4877 * CVE-2025-4878 * CVE-2025-5318 * CVE-2025-5372 CVSS scores: * CVE-2025-4877 ( SUSE ): 2.0 CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2025-4877 ( SUSE ): 4.5 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L * CVE-2025-4878 ( SUSE ): 2.0 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2025-4878 ( SUSE ): 3.6 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N * CVE-2025-5318 ( SUSE ): 5.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N * CVE-2025-5318 ( SUSE ): 5.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N * CVE-2025-5318 ( NVD ): 5.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N * CVE-2025-5372 ( SUSE ): 7.6 CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N * CVE-2025-5372 ( SUSE ): 7.1 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:L * CVE-2025-5372 ( NVD ): 5.0 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L Affected Products: * Basesystem Module 15-SP6 * Basesystem Module 15-SP7 * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 An update that solves four vulnerabilities can now be installed. ## Description: This update for libssh fixes the following issues: * CVE-2025-5318: Fixed likely read beyond bounds in sftp server handle management (bsc#1245311). * CVE-2025-4877: Fixed write beyond bounds in binary to base64 conversion functions (bsc#1245309). * CVE-2025-4878: Fixed use of uninitialized variable in privatekey_from_file() (bsc#1245310). * CVE-2025-5372: Fixed cases where ssh_kdf() returns a success code on certain failures (bsc#1245314). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch SUSE-2025-2229=1 openSUSE-SLE-15.6-2025-2229=1 * Basesystem Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP6-2025-2229=1 * Basesystem Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2025-2229=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * libssh4-0.9.8-150600.11.3.1 * libssh-debugsource-0.9.8-150600.11.3.1 * libssh-devel-0.9.8-150600.11.3.1 * libssh4-debuginfo-0.9.8-150600.11.3.1 * libssh-config-0.9.8-150600.11.3.1 * openSUSE Leap 15.6 (x86_64) * libssh4-32bit-0.9.8-150600.11.3.1 * libssh4-32bit-debuginfo-0.9.8-150600.11.3.1 * openSUSE Leap 15.6 (aarch64_ilp32) * libssh4-64bit-0.9.8-150600.11.3.1 * libssh4-64bit-debuginfo-0.9.8-150600.11.3.1 * Basesystem Module 15-SP6 (aarch64 ppc64le s390x x86_64) * libssh4-0.9.8-150600.11.3.1 * libssh-debugsource-0.9.8-150600.11.3.1 * libssh-devel-0.9.8-150600.11.3.1 * libssh4-debuginfo-0.9.8-150600.11.3.1 * libssh-config-0.9.8-150600.11.3.1 * Basesystem Module 15-SP6 (x86_64) * libssh4-32bit-0.9.8-150600.11.3.1 * libssh4-32bit-debuginfo-0.9.8-150600.11.3.1 * Basesystem Module 15-SP7 (aarch64 ppc64le s390x x86_64) * libssh4-0.9.8-150600.11.3.1 * libssh-debugsource-0.9.8-150600.11.3.1 * libssh-devel-0.9.8-150600.11.3.1 * libssh4-debuginfo-0.9.8-150600.11.3.1 * libssh-config-0.9.8-150600.11.3.1 * Basesystem Module 15-SP7 (x86_64) * libssh4-32bit-0.9.8-150600.11.3.1 *libssh4-32bit-debuginfo-0.9.8-150600.11.3.1 ## References: * https://www.suse.com/security/cve/CVE-2025-4877.html * https://www.suse.com/security/cve/CVE-2025-4878.html * https://www.suse.com/security/cve/CVE-2025-5318.html * https://www.suse.com/security/cve/CVE-2025-5372.html * https://bugzilla.suse.com/show_bug.cgi?id=1245309 * https://bugzilla.suse.com/show_bug.cgi?id=1245310 * https://bugzilla.suse.com/show_bug.cgi?id=1245311 * https://bugzilla.suse.com/show_bug.cgi?id=1245314 . Canonical has launched a vital OpenSSL update addressing major flaws that threaten data integrity. Update immediately.. libssh security update,SUSE important advisory,ssh vulnerability patch. . Severity: Critical. LinuxSecurity.com Team
SSH SFTP packet size not verified properly in Erlang OTP. (CVE-2025-26618) References: - https://bugs.mageia.org/show_bug.cgi?id=34067 . MGASA-2025-0088 - Updated erlang packages fix security vulnerability Publication date: 06 Mar 2025 URL: https://advisories.mageia.org/MGASA-2025-0088.html Type: security Affected Mageia releases: 9 CVE: CVE-2025-26618 SSH SFTP packet size not verified properly in Erlang OTP. (CVE-2025-26618) References: - https://bugs.mageia.org/show_bug.cgi?id=34067 - https://ubuntu.com/security/notices/USN-7313-1 - https://www.cve.org/CVERecord?id=CVE-2025-26618 SRPMS: - 9/core/erlang-24.3.4.15-1.1.mga9 . Erlang security alert MGASA-2025-0088 pertains to weaknesses in SSH SFTP packet size validation. For comprehensive information, consult the latest updates.. Erlang Security Fix, SSH SFTP Issue, Mageia Update. . Severity: Important. LinuxSecurity.com Team
Security fix for CVE-2023-48795. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-3fd1bc9276 2024-01-29 07:52:32.484208 -------------------------------------------------------------------------------- Name : prometheus-podman-exporter Product : Fedora 38 Version : 1.7.0 Release : 1.fc38 URL : https://github.com/containers/prometheus-podman-exporter Summary : Prometheus exporter for podman environment Description : Prometheus exporter for podman environments exposing containers, pods, images, volumes and networks information. -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2023-48795 -------------------------------------------------------------------------------- ChangeLog: * Sun Jan 21 2024 Navid Yaghoobi - 1.7.0-1 - release v1.7.0 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2255105 - CVE-2023-48795 prometheus-podman-exporter: ssh: Prefix truncation attack on Binary Packet Protocol (BPP) [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2255105 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-3fd1bc9276' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
An update that solves one vulnerability and has one errata is now available. . SUSE Security Update: Security update for python-paramiko ______________________________________________________________________________ Announcement ID: SUSE-SU-2018:2853-1 Rating: important References: #1085276 #1106148 Cross-References: CVE-2018-7750 Affected Products: SUSE CaaS Platform ALL ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for python-paramiko to version 1.18.5 fixes the following issues: This security issue was fixed: - CVE-2018-7750: transport.py in the SSH server implementation of Paramiko did not properly check whether authentication is completed processing other requests. A customized SSH client could have skipped the authentication step (bsc#1085276) This non-security issue was fixed: - Prevent connection problems with ssh servers due to no acceptable macs being available (bsc#1106148) For additional changes please check the changelog. Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE CaaS Platform ALL: To install this update, use the SUSE CaaS Platform Velum dashboard. It will inform you if it detects new updates and let you then trigger updating of the complete cluster in a controlled way. Package List: - SUSE CaaS Platform ALL (noarch): python-paramiko-1.18.5-10.6.1 References: https://www.suse.com/security/cve/CVE-2018-7750.html https://bugzilla.suse.com/1085276 https://bugzilla.suse.com/1106148 _______________________________________________ sle-security-updates mailinglist
git-annex before 6.20170818 allows remote attackers to execute arbitrary commands via an ssh URL with an initial dash character in the hostname, as demonstrated by an ssh://-eProxyCommand= URL, a related issue to CVE-2017-9800, CVE-2017-12836, CVE-2017-1000116, and CVE-2017-1000117. . Package : git-annex Version : 3.20120629+deb7u1 CVE ID : CVE-2017-12976 Debian Bug : 873088 git-annex before 6.20170818 allows remote attackers to execute arbitrary commands via an ssh URL with an initial dash character in the hostname, as demonstrated by an ssh://-eProxyCommand= URL, a related issue to CVE-2017-9800, CVE-2017-12836, CVE-2017-1000116, and CVE-2017-1000117. For Debian 7 "Wheezy", these problems have been fixed in version 3.20120629+deb7u1. We recommend that you upgrade your git-annex packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Enhance git-annex in response to operational error using ssh address containing hyphen in the hostname. Update to version 3.20120629+deb7u1 fixes the problems.. git-annex, Debian LTS, remote execution flaw, ssh commands issue. . Severity: Important. LinuxSecurity.com Team
Joern Schneeweisz discovered that git, a distributed revision control system, did not correctly handle maliciously constructed ssh:// URLs. This allowed an attacker to run an arbitrary shell command, for instance via git submodules. . Hash: SHA512 Package : git Version : 1:1.7.10.4-1+wheezy5 CVE ID : CVE-2017-1000117 Joern Schneeweisz discovered that git, a distributed revision control system, did not correctly handle maliciously constructed ssh:// URLs. This allowed an attacker to run an arbitrary shell command, for instance via git submodules. For Debian 7 "Wheezy", these problems have been fixed in version 1:1.7.10.4-1+wheezy5. We recommend that you upgrade your git packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Upgrade Git on Debian 7 Wheezy to address SSH URL handling vulnerabilities by modifying the sources list and installing the latest version directly. Debian Security, Git Security, Remote Command Execution, Security Patches, System Updates. . Severity: Critical. LinuxSecurity.com Team
Moderate: kexec-tools security, bug fix, and enhancement update. Date: Tue, 6 Mar 2012 14:48:49 -0600 Reply-To:
Low: openssh security update. Date: Fri, 22 Aug 2008 13:59:13 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for openssh on SL4.x, SL5.x i386/x86_64 Comments: To: "
Get the latest Linux and open source security news straight to your inbox.