CVE-2026-0964

A malicious SCP server can send unexpected paths that could make the client application override local files outside of working directory. This could be misused to create malicious executable or configuration files and make the user execute them under specific consequences. This is the same issue as in OpenSSH, tracked as CVE-2019-6111.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:libssh:libssh:*:*:*:*:*:*:*:*
cpe:2.3:a:redhat:hardened_images:-:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_container_platform:4.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:10.0:*:*:*:*:*:*:*

History

30 Apr 2026, 16:43

Type Values Removed Values Added
References () https://access.redhat.com/security/cve/CVE-2026-0964 - () https://access.redhat.com/security/cve/CVE-2026-0964 - Mitigation, Vendor Advisory
References () https://bugzilla.redhat.com/show_bug.cgi?id=2436979 - () https://bugzilla.redhat.com/show_bug.cgi?id=2436979 - Issue Tracking, Vendor Advisory
References () https://www.libssh.org/2026/02/10/libssh-0-12-0-and-0-11-4-security-releases/ - () https://www.libssh.org/2026/02/10/libssh-0-12-0-and-0-11-4-security-releases/ - Release Notes
CPE cpe:2.3:o:redhat:enterprise_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:hardened_images:-:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_container_platform:4.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*
cpe:2.3:a:libssh:libssh:*:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : 5.0
v2 : unknown
v3 : 6.3
First Time Redhat
Redhat enterprise Linux
Libssh
Libssh libssh
Redhat hardened Images
Redhat openshift Container Platform

30 Mar 2026, 13:26

Type Values Removed Values Added
Summary
  • (es) Un servidor SCP malicioso puede enviar rutas inesperadas que podrían hacer que la aplicación cliente sobrescriba archivos locales fuera del directorio de trabajo. Esto podría ser mal utilizado para crear archivos ejecutables o de configuración maliciosos y hacer que el usuario los ejecute bajo consecuencias específicas. Este es el mismo problema que en OpenSSH, rastreado como CVE-2019-6111.

26 Mar 2026, 22:16

Type Values Removed Values Added
References
  • () https://www.libssh.org/2026/02/10/libssh-0-12-0-and-0-11-4-security-releases/ -

26 Mar 2026, 21:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-26 21:17

Updated : 2026-04-30 16:43


NVD link : CVE-2026-0964

Mitre link : CVE-2026-0964

CVE.ORG link : CVE-2026-0964


JSON object : View

Products Affected

redhat

  • enterprise_linux
  • openshift_container_platform
  • hardened_images

libssh

  • libssh
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')