CVE-2019-16905General(netapp / cloud_backup)

LOWCVSS 7.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

OpenSSH 7.7 through 7.9 and 8.x before 8.1, when compiled with an experimental key type, has a pre-authentication integer overflow if a client or server is configured to use a crafted XMSS key. This leads to memory corruption and local code execution because of an error in the XMSS key parsing algorithm. NOTE: the XMSS implementation is considered experimental in all released OpenSSH versions, and there is no supported way to enable it when building portable OpenSSH.

1.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-190

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • cloud_backup
  • openssh
  • scalance_x204rna
  • scalance_x204rna_ecc

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • General: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Products
cloud_backupopensshscalance_x204rnascalance_x204rna_eccscalance_x204rna_ecc_firmwarescalance_x204rna_firmwaresteelstore_cloud_integrated_storage

1 version affected across 7 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-24: 102-24
Signal classification1 categories
General
1100.0%
Full discourse1 post
  • mel moreira@melmoreira35584
    General

    @DerekUrizar Urizar, I'm going to make it easy for you, with this you can access it. Target: guatemalavisible[.]net IP: 107.180.40.138 CVE: CVE-2025-67896 CVE-2024-3566 CVE-2023-38408 CVE-2022-37454 CVE-2021-41617 CVE-2020-15778 CVE-2019-16905 CVE-2017-8923 CVE-2013-2220 CVE-2008-3844

    Post summary

    The message lists a series of CVE identifiers and a target but provides no additional technical, exploit, or mitigation details.

    00023677
    298 followersView on X
CPE platform detail7 entries

7 of 7 entries

PartVendorProductVersionTarget SWTarget HW
Appnetappcloud_backup---
Appnetappsteelstore_cloud_integrated_storage---
Appopenbsdopenssh---
HWsiemensscalance_x204rna---
HWsiemensscalance_x204rna_ecc---
OSsiemensscalance_x204rna_ecc_firmware---
OSsiemensscalance_x204rna_firmware---

Explore more