CVE-2025-5372Libssh · Libssh
Vulnerability data via NVD (ingested)
A flaw was found in libssh versions built with OpenSSL versions older than 3.0, specifically in the ssh_kdf() function responsible for key derivation. Due to inconsistent interpretation of return values where OpenSSL uses 0 to indicate failure and libssh uses 0 for success—the function may mistakenly return a success status even when key derivation fails. This results in uninitialized cryptographic key buffers being used in subsequent communication, potentially compromising SSH sessions' confidentiality, integrity, and availability.
External references
Search for exposed instances
Shodan + Censys queries derived from NVD's CPE data. The vuln tag catches assets Shodan has explicitly linked to this CVE; the product / banner fingerprints find exposed instances even when the vuln tag was never applied (which is common).
vuln:CVE-2025-5372product:"Libssh Libssh"http.html:"Libssh"More intel sources (5)
vuln:CVE-2025-5372vulnerabilities.cve_id: CVE-2025-5372CVE-2025-5372CVE-2025-5372"CVE-2025-5372" exploit -site:nvd.nist.gov