Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
6.7
CVE-2026-15370: Libssh: SFTP Server Crashes or Executes Malicious Code
CVE-2026-15370
CVE-2026-15370
Summary
The libssh SFTP server can crash or allow malicious code to run on the server if it's forced to list long filenames from an attacker. This could potentially be exploited by a malicious client. To protect against this, update to a fixed version of libssh.
What to do
No fix is available yet. Check with your software vendor for updates.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| red hat | red hat enterprise linux 10 | All versions |
| red hat | red hat enterprise linux 8 | All versions |
| red hat | red hat enterprise linux 9 | All versions |
| red hat | red hat hardened images | All versions |
Original title
Libssh: libssh: stack buffer overflow in sftp server longname construction
Original description
A flaw was found in libssh. During SFTP server directory listing, the longname field is constructed with unsafe concatenation into a fixed-size stack buffer. When a client causes the server to list attacker-controlled filenames, sufficiently long names can overflow that stack buffer and may lead to crashes or possible code execution on the server.
nvd CVSS3.1
6.7
Vulnerability type
CWE-121
Stack-based Buffer Overflow
Published: 21 Jul 2026 · Updated: 21 Jul 2026 · First seen: 21 Jul 2026