CVE-2025-58181

MEDIUM5.3EPSS 0.05%

Unbounded memory consumption in golang.org/x/crypto/ssh

發布日:2025/11/19修改日:2026/4/28
也稱為:DEBIAN-CVE-2025-58181

描述

SSH servers parsing GSSAPI authentication requests do not validate the number of mechanisms specified in the request, allowing an attacker to cause unbounded memory consumption.

受影響套件(3)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM5.3CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

參考連結(6)