Direct Vulnerabilities

Known vulnerabilities in the libssh package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
Detection of Error Condition Without Action

*
  • M
Out-of-Bounds

<0.8.0~20170825.94fa1e38-1ubuntu0.7+esm7
  • M
NULL Pointer Dereference

<0.8.0~20170825.94fa1e38-1ubuntu0.7+esm6
  • M
Inefficient Regular Expression Complexity

<0.8.0~20170825.94fa1e38-1ubuntu0.7+esm6
  • L
Memory Leak

<0.8.0~20170825.94fa1e38-1ubuntu0.7+esm6
  • M
Directory Traversal

<0.8.0~20170825.94fa1e38-1ubuntu0.7+esm6
  • L
Buffer Underflow

<0.8.0~20170825.94fa1e38-1ubuntu0.7+esm6
  • L
External Control of File Name or Path

<0.8.0~20170825.94fa1e38-1ubuntu0.7+esm6
  • L
NULL Pointer Dereference

<0.8.0~20170825.94fa1e38-1ubuntu0.7+esm5
  • M
Out-of-bounds Write

<0.8.0~20170825.94fa1e38-1ubuntu0.7+esm4
  • M
Out-of-bounds Read

<0.8.0~20170825.94fa1e38-1ubuntu0.7+esm4
  • M
Use After Free

<0.8.0~20170825.94fa1e38-1ubuntu0.7+esm4
  • M
Unchecked Return Value

<0.8.0~20170825.94fa1e38-1ubuntu0.7+esm3
  • M
Arbitrary Code Injection

<0.8.0~20170825.94fa1e38-1ubuntu0.7+esm3
  • M
NULL Pointer Dereference

<0.8.0~20170825.94fa1e38-1ubuntu0.7
  • M
NULL Pointer Dereference

<0.8.0~20170825.94fa1e38-1ubuntu0.6
  • M
OS Command Injection

<0.8.0~20170825.94fa1e38-1ubuntu0.5
  • M
Improper Authentication

<0.8.0~20170825.94fa1e38-1ubuntu0.1