CVE-2026-0967

Source
https://cve.org/CVERecord?id=CVE-2026-0967
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-0967.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-0967
Downstream
AZL (1)
BELL (1)
DEBIAN (1)
ECHO (1)
JLSEC (1)
MGASA (1)
MINI (1)
OESA (6)
openSUSE (2)
RHSA (2)
RLSA (2)
SUSE (9)
UBUNTU (1)
Related
Published
2026-03-26T20:06:30Z
Modified
2026-09-03T03:30:58Z
Severity
  • 2.2 (Low) CVSS_V3 - CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:L CVSS Calculator
Summary
Libssh: libssh: denial of service via inefficient regular expression processing
Details

A flaw was found in libssh. A remote attacker, by controlling client configuration files or known_hosts files, could craft specific hostnames that when processed by the match_pattern() function can lead to inefficient regular expression backtracking. This can cause timeouts and resource exhaustion, resulting in a Denial of Service (DoS) for the client.

Database specific
{
    "cna_assigner": "redhat",
    "cwe_ids": [
        "CWE-1333"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/0xxx/CVE-2026-0967.json"
}
References

Affected packages

Git / gitlab.com/libssh/libssh-mirror

Affected ranges

Type
GIT
Repo
https://gitlab.com/libssh/libssh-mirror
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last Affected
Database specific
Show details
{
    "cpe": "cpe:2.3:a:libssh:libssh:*:*:*:*:*:*:*:*",
    "extracted_events": [
        {
            "introduced": "0"
        },
        {
            "last_affected": "0.11.3"
        }
    ],
    "source": "CPE_RANGE"
}

Affected versions

libssh-0.*
libssh-0.11.0
libssh-0.11.1
libssh-0.11.2
libssh-0.11.3
libssh-0.8.0
Other
release-0-3-0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-0967.json"