安全公告详情

NS-SA-2026-0094

2026-09-07 18:00:00

简介

important: httpd/libssh2 security update

严重级别

important

主题

An update for httpd/libssh2 is now available for NewStart CGSL MAIN 7.02.
NewStart Security has rated this update as having a security impact of important. A Common Vunlnerability Scoring System(CVSS)base score, which gives a detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section.

详细描述

httpd:
libssh2:


Security Fix(es):
httpd: A server side include handling flaw has been discovered in the Apache HTTP server. When Server Side Includes (SSI) areenabled and mod_cgid (but not mod_cgi) passes the shell-escaped query string to #exec cmd="..." directives an attacker may be able to inject commands executed by the server.(CVE-2025-58098)
httpd: bugfix
libssh2: A flaw in libssh2's sftp_symlink() function allows a malicious SSH server or man-in-the-middle attacker to trigger an out-of-bounds heap read via a crafted SSH_FXP_NAME response. This can disclose heap memory contents or crash the application, causing a denial of service (DoS).(CVE-2025-15661)
libssh2: A flaw in libssh2 allows a malicious SSH server to send a malformed public key response, triggering an invalid memory cleanup. This can cause the connecting client application to crash or leak information.(CVE-2026-58051)
libssh2: A flaw was found in the libssh2 library. A remote attacker can exploit an integer overflow vulnerability in the `userauth_password` function by manipulating the `username_len` or `password_len` arguments and cause a heap-based buffer overflow. This leads to a crash to the application linked to the library and potentially allows arbitrary code execution.(CVE-2026-7598)
libssh2: A vulnerability in libssh2 allows a malicious SSH server to freeze connected clients during the handshake process. By sending a malformed packet, the server triggers a loop that exhausts the client's CPU, resulting in a denial of service.(CVE-2026-55199)
libssh2: bugfix


Solution:
For details on how to apply this update, which includes the changes described in this advisory, refer to:
http://security.gd-linux.com/how_to_apply_patch.html
Remember the build tag is 7.02.07B5.

影响组件

  • httpd
  • libssh2

影响产品

  • CGSL MAIN 7.02

更新包

{"fix":[{"product":"CGSL MAIN 7.02","pkgs":[{"binary":["mod_lua-2.4.62-1.zncgsl7.3.x86_64.rpm","mod_session-2.4.62-1.zncgsl7.3.x86_64.rpm","mod_ldap-2.4.62-1.zncgsl7.3.x86_64.rpm","mod_proxy_html-2.4.62-1.zncgsl7.3.x86_64.rpm","mod_ssl-2.4.62-1.zncgsl7.3.x86_64.rpm","httpd-filesystem-2.4.62-1.zncgsl7.3.noarch.rpm","httpd-tools-2.4.62-1.zncgsl7.3.x86_64.rpm","httpd-2.4.62-1.zncgsl7.3.x86_64.rpm","httpd-devel-2.4.62-1.zncgsl7.3.x86_64.rpm","httpd-doc-2.4.62-1.zncgsl7.3.noarch.rpm","httpd-manual-2.4.62-1.zncgsl7.3.noarch.rpm","httpd-core-2.4.62-1.zncgsl7.3.x86_64.rpm"],"source":"httpd-2.4.62-1.zncgsl7.3.src.rpm"},{"binary":["libssh2-1.11.0-1.zncgsl7.11.x86_64.rpm","libssh2-core-1.11.0-1.zncgsl7.11.x86_64.rpm","libssh2-devel-1.11.0-1.zncgsl7.11.x86_64.rpm","libssh2-docs-1.11.0-1.zncgsl7.11.noarch.rpm"],"source":"libssh2-1.11.0-1.zncgsl7.11.src.rpm"}]}]}

CVE

参考