Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNews
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2847 articles · 106443 vulns · 38/41 feeds (7d)
← Back to list
5.0
CVE-2026-0964
red hat · red hat enterprise linux

Libssh: improper sanitation of paths received from scp servers

Description

A malicious SCP server can send unexpected paths that could make the client application override local files outside of working directory. This could be misused to create malicious executable or configuration files and make the user execute them under specific consequences. This is the same issue as in OpenSSH, tracked as CVE-2019-6111.

Affected Products

VendorProductVersions
red hatred hat enterprise linux—

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
canonicalubuntu linuxcert_advisory90%
open sourcelibsshcert_advisory90%
sulinuxcert_advisory90%

References

  • https://access.redhat.com/security/cve/CVE-2026-0964(vdb-entry, x_refsource_REDHAT)
  • https://bugzilla.redhat.com/show_bug.cgi?id=2436979(issue-tracking, x_refsource_REDHAT)
  • https://www.libssh.org/2026/02/10/libssh-0-12-0-and-0-11-4-security-releases/

Related News (2 articles)

Tier A
Microsoft MSRC1d ago
CVE-2026-0964 Libssh: improper sanitation of paths received from scp servers
→ No new info (linked only)
Tier B
BSI Advisories5d ago
[UPDATE] [mittel] libssh: Mehrere Schwachstellen ermöglichen Manipulation von Dateien und DoS
→ No new info (linked only)
CVSS 3.15.0 NONE
CISA KEV❌ No
Actively exploited❌ No
CWECWE-22
PublishedMar 26, 2026
Last enriched5d ago
Trending Score28
Source articles2
Independent2
Info Completeness5/14
Missing: vendor, product, versions, epss, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-1961EXP
Forman: foreman: remote code execution via command injection in websocket proxy
Trending: 55
CRITICALCVE-2026-5121
Libarchive: libarchive: arbitrary code execution via integer overflow in iso9660 image processing
Trending: 51
HIGHCVE-2026-28369EXP
Undertow: undertow: request smuggling via malformed http request headers
Trending: 49
HIGHCVE-2026-28367EXP
Undertow: undertow: request smuggling via `\r\r\r` as a header block terminator
Trending: 49
HIGHCVE-2026-5201EXP
Gdk-pixbuf: gdk-pixbuf: denial of service via heap-based buffer overflow when processing a specially crafted jpeg image
Trending: 42

Pin to Dashboard

Verification

State: verified
Confidence: 100%

Vulnerability Timeline

CVE Published
Mar 26, 2026
Discovered by ZDM
Mar 26, 2026