CVE-2026-7598Disclosure(libssh2 / libssh2)

LOWCVSS 6.9 · MEDIUM

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch libssh2 libssh2 systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

A security vulnerability has been detected in libssh2 up to 1.11.1. The impacted element is the function userauth_password of the file src/userauth.c. Such manipulation of the argument username_len/password_len leads to integer overflow. The attack may be launched remotely. The name of the patch is 256d04b60d80bf1190e96b0ad1e91b2174d744b1. A patch should be applied to remediate this issue.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-189CWE-190

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • libssh2

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 7 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 5 signals
  • Disclosure: 3 classified signals
  • General: 1 classified signal
  • Peaked 4d ago at 2 mentions (2026-05-01); latest day: 1
  • 7 total mentions across 5 days

Affected systems

Vendors
Products
libssh2

Deep dive

Activity timeline7 mentions / 5d
01122Mentions · 2026-05-01: 2Mentions · 2026-05-02: 1Mentions · 2026-05-28: 1Mentions · 2026-05-31: 2Mentions · 2026-06-07: 1PoC Mentioned / Linked · 2026-05-28: 1Patch / Workaround · 2026-05-28: 1Patch / Workaround · 2026-05-31: 1Patch / Workaround · 2026-06-07: 1Technical Details · 2026-05-01: 2Technical Details · 2026-05-02: 1Technical Details · 2026-05-31: 1Technical Details · 2026-06-07: 105-0105-0205-2805-3106-07
Signal classification3 categories
Disclosure
342.9%
Patch
342.9%
General
114.3%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-05-012
Disclosure2
2026-05-021
General1
2026-05-281
Patch1
2026-05-312
Disclosure1Patch1
2026-06-071
Patch1
Full discourse7 posts
  • Lyrie.ai@lyrie_ai
    Patch

    Sources TheHackerWire - CVE-2026-7598 Vulnerability Database libssh2 GitHub Repository Patch Commit - libssh2 Fix SUSE Security Update - libssh2 Batch

    Post summary

    The text indicates that a patch is available for CVE-2026-7598 through a dedicated commit and a SUSE security update.

    1000061
    236 followersView on X
  • Lyrie.ai@lyrie_ai
    Disclosure

    What Happened Researchers disclosed a significant integer overflow vulnerability in the widely-used libssh2 SSH client library. The vulnerability, tracked as CVE-2026-7598 with a CVSS score of 7.3 (High), exists in the userauthpassword function within src/userauth.c.

    Post summary

    Researchers disclosed CVE‑2026‑7598, a high‑CVSS integer‑overflow flaw in libssh2’s userauthpassword function.

    1000049
    236 followersView on X
  • Ferramentas Linux@Cezar_H_Linux
    Patch

    Você está protegido? Descubra como identificar e corrigir a vulnerabilidade CVE-2026-7598 no #Ubuntu com um script simples e medidas alternativas de segurança. Saiba mais -> https://tinyurl.com/dpez67dt https://t.co/9MIAYq3vxL

    Post summary

    The tweet promotes a simple script for detecting and fixing the Ubuntu vulnerability CVE‑2026‑7598, along with alternative security measures, focusing on remediation rather than exploitation.

    1000060
    1.5K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-7598 A security vulnerability has been detected in libssh2 up to 1.11.1. The impacted element is the function userauth_password of the file src/userauth.c. Such manipulation… https://www.cve.org/CVERecord?id=CVE-2026-7598

    Post summary

    CVE‑2026‑7598 is a newly detected vulnerability in libssh2 up to version 1.11.1 that impacts the userauth_password function in src/userauth.c; there is no evidence of an available PoC, exploit, patch, or active exploitation reported.

    00010224
    57.4K followersView on X
  • ThreatCluster@threatcluster
    Patch

    Fedora has issued security updates for libssh2 and NASM to fix a remotely triggerable heap overflow and arbitrary code execution bugs tracked as CVE-2026-7598 and CVE-2026-6067, according to Fedora Release Engineering changelogs. https://threatcluster.io/cluster/critical-vulnerabilities-in-fedora-libssh2-and-nasm-addresse-f9f1afba

    Post summary

    Fedora released patches for libssh2 and NASM to address remote heap overflow and arbitrary code execution vulnerabilities identified as CVE-2026-7598 and CVE-2026-6067.

    0000088
    317 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-7598 Integer Overflow in libssh2 Up to 1.11.1 userauth_password Function https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7598

    Post summary

    The entry merely notes CVE-2026-7598 as an integer overflow in libssh2’s userauth_password function and links to a generic details page, offering no evidence of exploits, patches, or in‑the‑wild activity.

    0000055
    4.0K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-7598 A security vulnerability has been detected in libssh2 up to 1.11.1. The impacted element is the function userauth_password of the file src/userauth.c. Such manipulation… https://www.cve.org/CVERecord?id=CVE-2026-7598 ----- Traducción: CVE-2026-7598 Se … http://infoflow.cloud`

    Post summary

    CVE‑2026‑7598 is a vulnerability in libssh2 up to version 1.11.1 affecting the userauth_password function; the notice provides technical details but no PoC, exploit, or patch information.

    0000033
    75 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Applibssh2libssh2---

Explore more