CVE-2026-0965
NONE EPSS 5.3%
Published Mar 26, 20263mo ago · Modified Jun 17, 20261w ago
Published Mar 26, 2026 3mo ago
Last Modified Jun 17, 2026 1w ago
Description
A flaw was found in libssh where it can attempt to open arbitrary files during configuration parsing. A local attacker can exploit this by providing a malicious configuration file or when the system is misconfigured. This vulnerability could lead to a Denial of Service (DoS) by causing the system to try and access dangerous files, such as block devices or large system files, which can disrupt normal operations.
Threat Intelligence
EPSS Exploit Probability
5.3% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available
Weaknesses 1
CWE-73
Affected Products 3
References 4
- access.redhat.com https://access.redhat.com/errata/RHSA-2026:18160
- access.redhat.com https://access.redhat.com/errata/RHSA-2026:18683
- access.redhat.com https://access.redhat.com/security/cve/CVE-2026-0965
- bugzilla.redhat.com https://bugzilla.redhat.com/show_bug.cgi?id=2436980
Remediation
No remediation data recorded yet
Check vendor advisories and the NVD entry for patch availability.