[CLSA-2025:1757499160] Fix CVE(s): CVE-2025-5318
Type:
security
Severity:
Important
Release date:
2025-09-10 10:12:46 UTC
Description:
* SECURITY UPDATE: out-of-bounds read in sftp_handle function - debian/patches/CVE-2025-5318.patch: fix possible buffer overrun issue by changing comparison operator in sftp_handle function - CVE-2025-5318
Updated packages:
  • libssh-4_0.9.3-2ubuntu2.5+tuxcare.els1_amd64.deb
    sha:15a4a255440b7d3890bc07a25da09b8f7933442e
  • libssh-dev_0.9.3-2ubuntu2.5+tuxcare.els1_amd64.deb
    sha:9e1de4482db976eea1976165a6a60d73c6d03133
  • libssh-doc_0.9.3-2ubuntu2.5+tuxcare.els1_all.deb
    sha:c26738e391f235d7df748fa2a3cf8999f82d0b43
  • libssh-gcrypt-4_0.9.3-2ubuntu2.5+tuxcare.els1_amd64.deb
    sha:ce6e6461126156a8f6e681749ec0da5502dc3294
  • libssh-gcrypt-dev_0.9.3-2ubuntu2.5+tuxcare.els1_amd64.deb
    sha:775882e340e08c23b07e0eb1539ff36ed2ed905b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.