Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Workaround
Manually verify the channel is not closed inside your channel data callbacks.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 21 Jul 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 21 Jul 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw was found in libssh. If data packets are processed after a channel is closed, channel data callbacks can be invoked after the associated data has already been freed, leading to crashes or possible use-after-free conditions. | |
| Title | Libssh: libssh: use-after-free via data callbacks on closed channels | |
| First Time appeared |
Redhat
Redhat enterprise Linux Redhat hummingbird |
|
| Weaknesses | CWE-416 | |
| CPEs | cpe:/a:redhat:hummingbird:1 cpe:/o:redhat:enterprise_linux:10 cpe:/o:redhat:enterprise_linux:8 cpe:/o:redhat:enterprise_linux:9 |
|
| Vendors & Products |
Redhat
Redhat enterprise Linux Redhat hummingbird |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-07-21T15:36:11.018Z
Reserved: 2026-07-07T15:40:24.561Z
Link: CVE-2026-59850
Updated: 2026-07-21T14:47:57.287Z
No data.
No data.
OpenCVE Enrichment
No data.