Intel

AIKIDO-2026-590021

net-ssh is vulnerable to Denial of Service (DoS)

Denial of Service (DoS)GHSA-pfqh-p9vh-wx4p Published Yesterday

58

Medium Risk

This Affects:

RUBYnet-ssh
0.0.1 - 7.3.4
Fixed in 7.3.5
Are you affected? Scan for Free

TL;DR

The transport packet reader uses the 4-byte wire packet length directly to size the receive buffer without capping it against the RFC 4253 35000-byte limit. Before authentication completes, a malicious server can declare an arbitrarily large packet length and stream data, so the client allocates memory without a bound. The fix rejects any declared packet length above the RFC 4253 maximum.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range and you connect to an SSH server that is malicious or compromised.

Background info

net-ssh is vulnerable to Denial of Service (DoS) in versions 0.0.1 - 7.3.4.

How to fix this

Upgrade the net-ssh library to the patch version.

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform