Back to overview

CVE-2026-15370

MEDIUM
6.7
CVSS 3.1
Description
A flaw was found in libssh. During SFTP server directory listing, the longname field is constructed with unsafe concatenation into a fixed-size stack buffer. When a client causes the server to list attacker-controlled filenames, sufficiently long names can overflow that stack buffer and may lead to crashes or possible code execution on the server.

Metadata

CVE ID
CVE-2026-15370
State
PUBLISHED
Assigner
redhat
Reserved
2026-07-10 08:14 UTC
Published
2026-07-21 09:07 UTC
Last updated
2026-07-21 09:07 UTC
Primary CWE
CWE-121
Stack-based Buffer Overflow
Vendor / Product
Red Hat / Red Hat Enterprise Linux 10
Sources
cve.org  ·  NVD

Severity & Metrics

6.7 MEDIUM CVSS 3.1
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Affected products (4)
VendorProductPlatformVersions
Red Hat Red Hat Enterprise Linux 10
Red Hat Red Hat Enterprise Linux 8
Red Hat Red Hat Enterprise Linux 9
Red Hat Red Hat Hardened Images
Weakness (CWE)
CWESourceDescription
CWE-121 cna Stack-based Buffer Overflow
CVSS scores (1)
ScoreSeverityVersionSourceVector
6.7 MEDIUM 3.1 cna CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Back to overview