Russh is a Rust SSH client and server library. Prior to 0.63.2, an authenticated remote peer can send SSH_MSG_KEXINIT without the required SSH_MSG_KEX_ECDH_INIT and then flood SSH_MSG_CHANNEL_OPEN messages while SessionKexState::InProgress prevents priority_re
Shenlong is analyzing...
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-102823 | 7.5 HIGH | russh: Client-side channel-scoped Handler callbacks fire for channel IDs the client never |
| CVE-2026-102820 | 6.2 MEDIUM | pageant: Out-of-bounds read / oversized allocation in `pageant` MemoryMap::read via a mali |
| CVE-2026-102824 | 4.3 MEDIUM | Russh: Missing X25519 zero-point validation in hybrid ML-KEM key exchange |
| CVE-2026-102822 | 3.7 LOW | russh: negotiating a MAC-requiring block cipher (CTR/CBC) with mac=none causes a slice-ind |
| CVE-2026-102825 | 3.7 LOW | Russh: Configured server auth-attempt cap is not enforced in the USERAUTH_REQUEST runtime |
No comments yet