VDB
BDU%3A2025-07641
BDU%3A2025-07641
PUBLISHED
CVSS 3.5 LOW
Уязвимость функции ssh_get_fingerprint_hash() библиотеки libssh, позволяющая нарушителю выполнить произвольный код
Risk Scores
CVSS 2.0
3.5
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical Ltd., Novell Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», АО «ИВК» | Ubuntu, Suse Linux Enterprise Server, SUSE Linux Enterprise Server for SAP Applications, SUSE Linux Enterprise Module for Basesystem, Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), SUSE Linux Enterprise High Performance Computing, SUSE Linux Enterprise Micro, SUSE Manager Retail Branch Server, SUSE Manager Proxy, SUSE Manager Server, АЛЬТ СП 10, Suse Linux Enterprise Desktop, OpenSUSE Leap, libssh, SUSE Linux Micro |
Timeline
- Jun 27, 2025 CVE Published
- Oct 1, 2025 CVE Updated
References
- http://www.slackware.com/security/viewer.php?l=slackware-security&y=2025&m=slackware-security.392586 url
- https://www.libssh.org/security/advisories/CVE-2025-4877.txt url
- https://git.libssh.org/projects/libssh.git/commit/?id=6fd9cc8ce3958092a1aae11f1f2e911b2747732d url
- https://altsp.su/obnovleniya-bezopasnosti/ url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ url
- https://security-tracker.debian.org/tracker/CVE-2025-4877 url
- https://ubuntu.com/security/CVE-2025-4877 url
- https://www.suse.com/security/cve/CVE-2025-4877.html url