CVE-2026-59847 Details
Description
A flaw was found in libssh. Incorrect AES-GCM finalization checks in builds using the OpenSSL backend can effectively remove integrity protection, allowing an in-path attacker to modify plaintext on the wire without detection.
A vulnerability exists in libssh when built with the OpenSSL backend for AES-GCM. The issue arises from incorrect finalization checks of the AES-GCM encryption, which can inadvertently strip away integrity protection. This flaw enables an in-path attacker to alter plaintext data being transmitted, without detection.
To mitigate this vulnerability, disable the [email protected] and [email protected] ciphers.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jul 21, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://access.redhat.com/errata/RHSA-2026:42922 | [email protected] | Third Party Advisory |
| https://access.redhat.com/errata/RHSA-2026:55855 | [email protected] | Third Party Advisory |
| https://access.redhat.com/errata/RHSA-2026:62217 | [email protected] | Third Party Advisory |
| https://access.redhat.com/errata/RHSA-2026:62218 | [email protected] | Third Party Advisory |
| https://access.redhat.com/security/cve/CVE-2026-59847 | [email protected] | Third Party Advisory |
| https://bugzilla.redhat.com/show_bug.cgi?id=2498180 | [email protected] | Issue TrackingThird Party Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-1310 | Missing Ability to Patch ROM Code | CISA-ADP |
| CWE-253 | Incorrect Check of Function Return Value | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| libssh libssh | >= 0.9.0, < 0.11.5 0.12.0 |
CPE
Remediation
| |
| redhat hardened images | All versions |
CPE
Remediation
| |
| redhat enterprise linux | 8.0 9.0 10.0 |
CPE
Remediation
| |
Change History
10 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Sep 4, 2026 | Modified Analysis | [email protected] |
| Sep 1, 2026 | CVE Modified | [email protected] |
| Sep 1, 2026 | CVE Modified | [email protected] |
| Aug 17, 2026 | CVE Modified | [email protected] |
| Aug 12, 2026 | CVE Modified | [email protected] |
| Jul 30, 2026 | Initial Analysis | [email protected] |
| Jul 22, 2026 | CVE Modified | [email protected] |
| Jul 21, 2026 | CVE Modified | [email protected] |
| Jul 21, 2026 | CVE Modified | CISA-ADP |
| Jul 21, 2026 | New CVE Received | [email protected] |