VDB
BDU%3A2025-07645
BDU%3A2025-07645
PUBLISHED
CVSS 4 MEDIUM
Уязвимость функции sftp_decode_channel_data_to_packet() библиотеки libssh, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
4
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Novell Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», АО «ИВК», Canonical Ltd. | openSUSE Tumbleweed, Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), АЛЬТ СП 10, Ubuntu, libssh |
Timeline
- Jun 27, 2025 CVE Published
- Oct 1, 2025 CVE Updated
References
- http://www.slackware.com/security/viewer.php?l=slackware-security&y=2025&m=slackware-security.392586 url
- https://www.libssh.org/security/advisories/CVE-2025-5449.txt url
- https://git.libssh.org/projects/libssh.git/commit/?id=261612179f740bc62ba363d98b3bd5e5573a811f url
- https://git.libssh.org/projects/libssh.git/commit/?id=3443aec90188d6aab9282afc80a81df5ab72c4da url
- https://git.libssh.org/projects/libssh.git/commit/?id=78485f446af9b30e37eb8f177b81940710d54496 url
- https://git.libssh.org/projects/libssh.git/commit/?id=f79ec51b7fd519dbc5737a7ba826e3ed093f6ceb url
- https://altsp.su/obnovleniya-bezopasnosti/ url
- https://security-tracker.debian.org/tracker/CVE-2025-5449 url
- https://www.suse.com/security/cve/CVE-2025-5449.html url
- https://git.libssh.org/projects/libssh.git/commit/?id=5504ff40515439a5fecbb17da7483000c4d12eb7 advisory
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ advisory
- https://ubuntu.com/security/CVE-2025-5449 advisory