CVE-2025-5372
A flaw was found in libssh versions built with OpenSSL versions older than 3.0, specifically in the ssh_kdf() function responsible for key derivation. Due to inconsistent interpretation of return values where OpenSSL uses 0 to indicate failure and libssh uses 0 for success—the function may mistakenly return a success status even when key derivation fails. This results in uninitialized cryptographic key buffers being used in subsequent communication, potentially compromising SSH sessions' confidentiality, integrity, and availability.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 5
- CVSS vector
- CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L
- EPSS probability
- 0.43%
- CWE
- CWE-682
- Published
- 2025-07-04
- Last modified
- 2026-09-01
Affected products
- libssh libssh
- Red Hat Red Hat Enterprise Linux 8
- Red Hat Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions
- Red Hat Red Hat Enterprise Linux 8.8 Telecommunications Update Service
- Red Hat Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions
- Red Hat Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support
- Red Hat Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On
- Red Hat Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support
Weakness type
Related vulnerabilities
- CVE-2023-2163 — Incorrect Verifier Branch Pruning Logic Leads To Arbitrary Read/Write In Linux Kernel and Lateral Privilege Escalation
- CVE-2022-23066 — Solana rBPF - Incorrect Calculation in sdiv instruction
- CVE-2021-31440 — This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel 5.11.15. An a
- CVE-2023-2423 — Rockwell Automation Armor PowerFlex Vulnerable to Denial-Of-Service
- CVE-2026-54754 — Klever-Go: Marketplace settlement mints KLV when referral % + royalty % exceed the bid (negative seller share silently skipped)
- CVE-2026-25634 — iccDEV memcpy-param-overlap in CIccTagMultiProcessElement::Apply()
- CVE-2026-53671 — PREVAIL: Context-write no-op in do_mem_store allows unsafe eBPF programs to pass verification
- CVE-2026-53670 — PREVAIL: Non-singleton typeset in add() skips offset update, allowing OOB access to pass eBPF verification