CVE-2026-66033 | libssh2 up to 1.11.1 src/openssl.c ssh2_cipher_crypt integer underflow

SecurityVulns

A vulnerability described as critical has been identified in libssh2 up to 1.11.1. The affected element is the function ssh2_cipher_crypt of the file src/openssl.c. Such manipulation leads to integer underflow.

This vulnerability is uniquely identified as CVE-2026-66033. The attack can be launched remotely. No exploit exists.

It is best practice to apply a patch to resolve this issue.VulDB Recent EntriesRead More