LibSSH2_jll
JLSEC-2026-663High 8.3Upstreamlibssh2 through 1.11.1 grows its publickey list with `SSH2_REALLOC` but does not zero-ini…JLSEC-2026-662High 8.3Upstreamlibssh2 through 1.11.1 reads an attacker-controlled 32-bit attribute count from a...JLSEC-2026-659High 8.3Upstreamlibssh2 through 1.11.1, fixed in commit 2dae302, contains an out-of-bounds heap read vuln…JLSEC-2026-661Critical 9.2Upstreamlibssh2 through 1.11.1, fixed in commit 7acf3df contains an out-of-bounds write vulnerabi…JLSEC-2026-660High 8.2Upstreamlibssh2 through 1.11.1, fixed in commit 1762685, contains a pre-authentication denial of …JLSEC-2026-492Medium 6.9UpstreamNo summary availableJLSEC-2025-95Medium 5.9UpstreamNo summary availableJLSEC-2025-189High 7.5UpstreamAn issue was discovered in function `_libssh2_packet_add` in libssh2 1.10.0 allows attack…JLSEC-2025-188High 8.1UpstreamIn libssh2 v1.9.0 and earlier versions, the `SSH_MSG_DISCONNECT` logic in packet.c has an…