openSUSE 16 Security Update : libssh (openSUSE-SU-2026:20647-1)

high Nessus Plugin ID 311769

Synopsis

The remote openSUSE host is missing one or more security updates.

Description

The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:20647-1 advisory.

- Update to version 0.11.4:
- CVE-2026-0964: SCP Protocol Path Traversal in ssh_scp_pull_request() (bsc#1258049)
- CVE-2026-0965: Possible Denial of Service when parsing unexpected configuration files (bsc#1258045)
- CVE-2026-0966: Buffer underflow in ssh_get_hexa() on invalid input (bsc#1258054)
- CVE-2026-0967: Specially crafted patterns could cause DoS (bsc#1258081)
- CVE-2026-0968: OOB Read in sftp_parse_longname() (bsc#1258080)
- CVE-2025-8114: Fix NULL pointer dereference after allocation failure (bsc#1246974)
- CVE-2025-8277: Fix memory leak of ephemeral key pair during repeated wrong KEX (bsc#1249375)

Tenable has extracted the preceding description block directly from the SUSE security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected libssh-config, libssh-devel and / or libssh4 packages.

See Also

https://bugzilla.suse.com/1246974

https://bugzilla.suse.com/1249375

https://www.suse.com/security/cve/CVE-2025-8114

https://www.suse.com/security/cve/CVE-2025-8277

https://bugzilla.suse.com/1258045

https://bugzilla.suse.com/1258049

https://bugzilla.suse.com/1258054

https://bugzilla.suse.com/1258080

https://bugzilla.suse.com/1258081

https://www.suse.com/security/cve/CVE-2026-0964

https://www.suse.com/security/cve/CVE-2026-0965

https://www.suse.com/security/cve/CVE-2026-0966

https://www.suse.com/security/cve/CVE-2026-0967

https://www.suse.com/security/cve/CVE-2026-0968

Plugin Details

Severity: High

ID: 311769

File Name: openSUSE-2026-20647-1.nasl

Version: 1.1

Type: Local

Agent: unix

Published: 5/2/2026

Updated: 5/2/2026

Supported Sensors: Continuous Assessment, Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.0

CVSS v2

Risk Factor: High

Base Score: 8.5

Temporal Score: 6.3

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:P/A:C

CVSS Score Source: CVE-2026-0966

CVSS v3

Risk Factor: High

Base Score: 8.2

Temporal Score: 7.1

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: p-cpe:/a:novell:opensuse:libssh-config, cpe:/o:novell:opensuse:16.0, p-cpe:/a:novell:opensuse:libssh4, p-cpe:/a:novell:opensuse:libssh-devel

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Ease: No known exploits are available

Patch Publication Date: 4/29/2026

Vulnerability Publication Date: 7/24/2025

Reference Information

CVE: CVE-2025-8114, CVE-2025-8277, CVE-2026-0964, CVE-2026-0965, CVE-2026-0966, CVE-2026-0967, CVE-2026-0968

IAVA: 2025-A-0692-S, 2026-A-0166