A vulnerability, which was classified as problematic, was found in libssh up to 0.11.1. This affects the function
ssh_kdf
. The manipulation leads to privilege escalation.
This vulnerability is uniquely identified as CVE-2025-5372. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.