Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
RHSA-2026:18683
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2026:18683
Import Source
https://security.access.redhat.com/data/osv/RHSA-2026:18683.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2026:18683
Upstream
CVE-2025-4877
CVE-2025-4878
CVE-2025-5351
CVE-2025-8114
CVE-2025-8277
CVE-2026-0964
CVE-2026-0965
CVE-2026-0966
CVE-2026-0967
CVE-2026-0968
Published
2026-05-20T10:09:25Z
Modified
2026-05-20T10:32:40.993611421Z
Severity
6.5 (Medium)
CVSS_V3 - CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: libssh security update
Details
References
https://access.redhat.com/errata/RHSA-2026:18683
https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/9/html/9.8_release_notes/index
https://access.redhat.com/security/updates/classification/#moderate
https://bugzilla.redhat.com/show_bug.cgi?id=2369367
https://bugzilla.redhat.com/show_bug.cgi?id=2376184
https://bugzilla.redhat.com/show_bug.cgi?id=2376193
https://bugzilla.redhat.com/show_bug.cgi?id=2383220
https://bugzilla.redhat.com/show_bug.cgi?id=2383888
https://bugzilla.redhat.com/show_bug.cgi?id=2433121
https://bugzilla.redhat.com/show_bug.cgi?id=2436979
https://bugzilla.redhat.com/show_bug.cgi?id=2436980
https://bugzilla.redhat.com/show_bug.cgi?id=2436981
https://bugzilla.redhat.com/show_bug.cgi?id=2436982
https://issues.redhat.com/browse/RHEL-150661
https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_18683.json
https://access.redhat.com/security/cve/CVE-2025-4877
https://www.cve.org/CVERecord?id=CVE-2025-4877
https://nvd.nist.gov/vuln/detail/CVE-2025-4877
https://git.libssh.org/projects/libssh.git/commit/?h=stable-0.11&id=6fd9cc8ce3958092a1aae11f1f2e911b2747732d
https://www.libssh.org/security/advisories/CVE-2025-4877.txt
https://access.redhat.com/security/cve/CVE-2025-4878
https://www.cve.org/CVERecord?id=CVE-2025-4878
https://nvd.nist.gov/vuln/detail/CVE-2025-4878
https://git.libssh.org/projects/libssh.git/commit/?id=697650caa97eaf7623924c75f9fcfec6dd423cd1
https://git.libssh.org/projects/libssh.git/commit/?id=b35ee876adc92a208d47194772e99f9c71e0bedb
https://www.libssh.org/security/advisories/CVE-2025-4878.txt
https://access.redhat.com/security/cve/CVE-2025-5351
https://www.cve.org/CVERecord?id=CVE-2025-5351
https://nvd.nist.gov/vuln/detail/CVE-2025-5351
https://access.redhat.com/security/cve/CVE-2025-8114
https://www.cve.org/CVERecord?id=CVE-2025-8114
https://nvd.nist.gov/vuln/detail/CVE-2025-8114
https://git.libssh.org/projects/libssh.git/commit/?id=53ac23ded4cb2c5463f6c4cd1525331bd578812d
https://git.libssh.org/projects/libssh.git/commit/?id=65f363c9
https://www.libssh.org/security/advisories/CVE-2025-8114.txt
https://access.redhat.com/security/cve/CVE-2025-8277
https://www.cve.org/CVERecord?id=CVE-2025-8277
https://nvd.nist.gov/vuln/detail/CVE-2025-8277
https://www.libssh.org/security/advisories/CVE-2025-8277.txt
https://access.redhat.com/security/cve/CVE-2026-0964
https://www.cve.org/CVERecord?id=CVE-2026-0964
https://nvd.nist.gov/vuln/detail/CVE-2026-0964
https://www.libssh.org/2026/02/10/libssh-0-12-0-and-0-11-4-security-releases/
https://access.redhat.com/security/cve/CVE-2026-0965
https://www.cve.org/CVERecord?id=CVE-2026-0965
https://nvd.nist.gov/vuln/detail/CVE-2026-0965
https://access.redhat.com/security/cve/CVE-2026-0966
https://www.cve.org/CVERecord?id=CVE-2026-0966
https://nvd.nist.gov/vuln/detail/CVE-2026-0966
https://access.redhat.com/security/cve/CVE-2026-0967
https://www.cve.org/CVERecord?id=CVE-2026-0967
https://nvd.nist.gov/vuln/detail/CVE-2026-0967
https://access.redhat.com/security/cve/CVE-2026-0968
https://www.cve.org/CVERecord?id=CVE-2026-0968
https://nvd.nist.gov/vuln/detail/CVE-2026-0968
Affected packages
Red Hat:enterprise_linux:9::appstream
libssh
Package
Name
libssh
Purl
pkg:rpm/redhat/libssh
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.10.4-18.el9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:18683.json"
libssh-config
Package
Name
libssh-config
Purl
pkg:rpm/redhat/libssh-config
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.10.4-18.el9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:18683.json"
libssh-debuginfo
Package
Name
libssh-debuginfo
Purl
pkg:rpm/redhat/libssh-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.10.4-18.el9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:18683.json"
libssh-debugsource
Package
Name
libssh-debugsource
Purl
pkg:rpm/redhat/libssh-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.10.4-18.el9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:18683.json"
libssh-devel
Package
Name
libssh-devel
Purl
pkg:rpm/redhat/libssh-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.10.4-18.el9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:18683.json"
Red Hat:enterprise_linux:9::baseos
libssh
Package
Name
libssh
Purl
pkg:rpm/redhat/libssh
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.10.4-18.el9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:18683.json"
libssh-config
Package
Name
libssh-config
Purl
pkg:rpm/redhat/libssh-config
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.10.4-18.el9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:18683.json"
libssh-debuginfo
Package
Name
libssh-debuginfo
Purl
pkg:rpm/redhat/libssh-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.10.4-18.el9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:18683.json"
libssh-debugsource
Package
Name
libssh-debugsource
Purl
pkg:rpm/redhat/libssh-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.10.4-18.el9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:18683.json"
libssh-devel
Package
Name
libssh-devel
Purl
pkg:rpm/redhat/libssh-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:0.10.4-18.el9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:18683.json"
RHSA-2026:18683 - OSV