[CLSA-2026:1786092035] Fix CVE(s): CVE-2026-59850
Type:
security
Severity:
Important
Release date:
2026-08-07 08:40:44 UTC
Description:
* SECURITY UPDATE: use-after-free in channel_rcv_data() when a DATA packet is received on a channel already closed by the remote peer - debian/patches/CVE-2026-59850.patch: reject DATA packets on channels already closed by the remote peer (SSH_CHANNEL_FLAG_CLOSED_REMOTE) in channel_rcv_data(), and additionally drop the callback list in ssh_channel_free() so DATA arriving between a local free and the peer's CLOSE can no longer dispatch callbacks on a released channel, both in src/channels.c - CVE-2026-59850
CVEs fixed:
Updated packages:
  • libssh-4_0.8.0~20170825.94fa1e38-1ubuntu0.7+tuxcare.els6_amd64.deb
    sha:97b4ba54e832448c6dbed41a671ba9a2b04cef8f
  • libssh-dev_0.8.0~20170825.94fa1e38-1ubuntu0.7+tuxcare.els6_amd64.deb
    sha:88ffae325540157dad4464de23b3994bd63c5cad
  • libssh-doc_0.8.0~20170825.94fa1e38-1ubuntu0.7+tuxcare.els6_all.deb
    sha:565c212807ce5318c9d65e1b789d2cd64f259279
  • libssh-gcrypt-4_0.8.0~20170825.94fa1e38-1ubuntu0.7+tuxcare.els6_amd64.deb
    sha:a2536df09868c62ba5b43d7a3ff13f5cc9c6a45a
  • libssh-gcrypt-dev_0.8.0~20170825.94fa1e38-1ubuntu0.7+tuxcare.els6_amd64.deb
    sha:f20924404f050cf39a8aa0fb0d7f601b5a7a0a2f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.