Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
6.7

CVE-2026-15370: Libssh: SFTP Server Crashes or Executes Malicious Code

CVE-2026-15370 CVE-2026-15370
Summary

The libssh SFTP server can crash or allow malicious code to run on the server if it's forced to list long filenames from an attacker. This could potentially be exploited by a malicious client. To protect against this, update to a fixed version of libssh.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versions
red hat red hat enterprise linux 10 All versions
red hat red hat enterprise linux 8 All versions
red hat red hat enterprise linux 9 All versions
red hat red hat hardened images All versions
Original title
Libssh: libssh: stack buffer overflow in sftp server longname construction
Original description
A flaw was found in libssh. During SFTP server directory listing, the longname field is constructed with unsafe concatenation into a fixed-size stack buffer. When a client causes the server to list attacker-controlled filenames, sufficiently long names can overflow that stack buffer and may lead to crashes or possible code execution on the server.
nvd CVSS3.1 6.7
Vulnerability type
CWE-121 Stack-based Buffer Overflow
Published: 21 Jul 2026 · Updated: 21 Jul 2026 · First seen: 21 Jul 2026