cbcvebase.
CVE-2025-8277
published 2025-09-09

CVE-2025-8277: A flaw was found in libssh's handling of key exchange (KEX) processes when a client repeatedly sends incorrect KEX guesses. The library fails to free memory…

PriorityP412low3.1CVSS 3.1
AVNACHPRLUINSUCNINAL
EPSS
0.38%
30.1th percentile
A flaw was found in libssh's handling of key exchange (KEX) processes when a client repeatedly sends incorrect KEX guesses. The library fails to free memory during these rekey operations, which can gradually exhaust system memory. This issue can lead to crashes on the client side, particularly when using libgcrypt, which impacts application stability and availability.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlibssh< libssh 0.10.6-0+deb12u2 (bookworm)libssh 0.10.6-0+deb12u2 (bookworm)
libsshlibssh>= 0 < 0.9.8-0+deb11u20.9.8-0+deb11u2
libsshlibssh>= 0 < 0.10.6-0+deb12u20.10.6-0+deb12u2
libsshlibssh>= 0 < 0.11.2-1+deb13u10.11.2-1+deb13u1
libsshlibssh>= 0 < 0.11.3-10.11.3-1
libsshlibssh>= 0 < 0.9.6-2ubuntu0.22.04.60.9.6-2ubuntu0.22.04.6
libsshlibssh>= 0 < 0.10.6-2ubuntu0.30.10.6-2ubuntu0.3
libsshlibssh>= 0 < 0.11.2-1ubuntu0.20.11.2-1ubuntu0.2
libsshlibssh>= 0 < 0.6.3-4.3ubuntu0.6+esm40.6.3-4.3ubuntu0.6+esm4
libsshlibssh>= 0 < 0.8.0~20170825.94fa1e38-1ubuntu0.7+esm60.8.0~20170825.94fa1e38-1ubuntu0.7+esm6
libsshlibssh>= 0 < 0.9.3-2ubuntu2.5+esm30.9.3-2ubuntu2.5+esm3
msrcazl3_libssh_0.10.6-2_on_azure_linux_3.0
msrcazl3_libssh_0.10.6-3_on_azure_linux_3.0
msrcazl3_libssh_0.10.6-4_on_azure_linux_3.0
msrccbl2_libssh_0.10.6-2_on_cbl_mariner_2.0
msrccbl2_libssh_0.10.6-3_on_cbl_mariner_2.0
msrccbl2_libssh_0.10.6-5_on_cbl_mariner_2.0
msrccbl2_python-gevent_21.1.2-3_on_cbl_mariner_2.0
msrccbl_mariner_1.0_arm
msrccbl_mariner_1.0_x64
msrccm1_c-ares_1.17.1-1_on_cbl_mariner_1.0

CVSS provenance

nvdv3.13.1LOWCVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L
osv3.1LOW
vendor_msrc7.5HIGH
vendor_debian3.1LOW
vendor_redhat3.1LOW
vendor_ubuntu3.1LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.