CVE-2025-5351
NixOS vulnerability analysis and mitigation

Overview

A flaw was found in the key export functionality of libssh (CVE-2025-5351). The issue occurs in the internal function responsible for converting cryptographic keys into serialized formats. During error handling, a memory structure is freed but not cleared, leading to a potential double free issue if an additional failure occurs later in the function. The vulnerability affects libssh versions 0.10.0 and later when built with OpenSSL 3.0 or later (Debian Tracker, Ubuntu Security).

Technical details

The vulnerability exists in the pki_key_to_blob() function where a memory structure (params) is deallocated during error handling but not properly nullified. The issue has received a CVSS 3.1 base score of 4.2 (Medium), with the following vector: CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N. The vulnerability requires network access and has high attack complexity, with low privileges required and no user interaction needed (Ubuntu Security).

Impact

This condition may result in heap corruption or application instability in low-memory scenarios, posing a risk to system reliability where key export operations are performed. The vulnerability primarily affects system stability and could potentially lead to application crashes when key export operations are executed (Ubuntu Security, Debian Tracker).

Mitigation and workarounds

Fixed versions have been released for various distributions: Ubuntu 25.04 (0.11.1-1ubuntu0.1), 24.10 (0.10.6-3ubuntu1.1), and 24.04 LTS (0.10.6-2ubuntu0.1). Debian has also released fixes with version 0.11.2-1 for sid and trixie distributions (Ubuntu Security, Debian Tracker).

Additional resources


SourceThis report was generated using AI

Related NixOS vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-22783HIGH8.1
  • NixOSNixOS
  • iris
NoYesJan 12, 2026
CVE-2026-0821MEDIUM6.9
  • NixOSNixOS
  • quickjs
NoNoJan 10, 2026
CVE-2025-68949MEDIUM5.3
  • NixOSNixOS
  • n8n
NoYesJan 13, 2026
CVE-2026-22784LOW2.3
  • NixOSNixOS
  • lychee
NoYesJan 12, 2026
CVE-2026-23497LOW1.3
  • NixOSNixOS
  • learning
NoYesJan 14, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management