From ae8881dfe54214c0c0eb88345c35e15a14081b3d Mon Sep 17 00:00:00 2001 From: Jakub Jelen Date: Tue, 22 Apr 2025 21:18:44 +0200 Subject: CVE-2025-5318: sftpserver: Fix possible buffer overrun Signed-off-by: Jakub Jelen Reviewed-by: Andreas Schneider --- src/sftpserver.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) Index: libssh-0.10.6/src/sftpserver.c =================================================================== --- libssh-0.10.6.orig/src/sftpserver.c +++ libssh-0.10.6/src/sftpserver.c @@ -538,7 +538,7 @@ void *sftp_handle(sftp_session sftp, ssh memcpy(&val, ssh_string_data(handle), sizeof(uint32_t)); - if (val > SFTP_HANDLES) { + if (val >= SFTP_HANDLES) { return NULL; }