CVE-2026-59845 affecting package libssh for versions less than 0.10.6-9
Details
A flaw was found in libssh. When ProxyCommand is used, an unchecked fork() failure can be stored as process ID -1; during cleanup, signals may then be sent across the caller's accessible process tree, leading to local denial of service.