Home / mailings [SECURITY] [DSA 6410-1] libssh security update
Posted on 02 August 2026
Debian Security Advisory- -------------------------------------------------------------------------
Debian Security Advisory DSA-6410-1 security@debian.org
https://www.debian.org/security/ Salvatore Bonaccorso
August 02, 2026 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : libssh
CVE ID : CVE-2026-0964 CVE-2026-0965 CVE-2026-0966 CVE-2026-0967
CVE-2026-0968 CVE-2026-3731 CVE-2026-15370 CVE-2026-59843
CVE-2026-59844 CVE-2026-59845 CVE-2026-59846 CVE-2026-59847
CVE-2026-59848 CVE-2026-59849 CVE-2026-59850
Debian Bug : 1127693 1142537
Several vulnerabilities were discovered in libssh, a tiny C SSH library,
which may result in denial of service, information disclosure and
potentially the execution of arbitrary code.
For the stable distribution (trixie), these problems have been fixed in
version 0.11.5-0+deb13u1.
We recommend that you upgrade your libssh packages.
For the detailed security status of libssh please refer to its security
tracker page at:
https://security-tracker.debian.org/tracker/libssh
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list: debian-security-announce@lists.debian.org
