CNNVD-202510-2759 Information

CNNVD ID

CNNVD-202510-2759

CVE-2025-11624

  • CNNVD Published: 2025-10-21

Description (Chinese)

wolfSSH是wolfSSL开源的一个小型、快速、可移植的 SSH 实现,包括对 SCP 和 SFTP 的支持。 wolfSSH存在安全漏洞,该漏洞源于接收特制数据包时可能出现栈缓冲区溢出,可能导致执行任意代码。

Description (English)

WolfSSH is a small, fast, portable SSH from the WolfSSL open source, including support for SCP and SFTP. There is a security loophole in the wolfSSH, which stems from the possibility of a barrage of buffers when special packages are received, which could lead to the implementation of arbitrary codes.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

wolfSSL

Published

2025-10-21

Last Modified

2026-02-24

References

https://github.com/wolfSSL/wolfssh/pull/834

Share on: