A vulnerability, which was classified as problematic, has been found in Eugeny Russh up to 0.62.3. This issue affects some unknown processing of the file russh/src/server/encrypted.rs of the component Parser. Performing a manipulation results in out-of-bounds read.

This vulnerability was named CVE-2026-73489. The attack may be initiated remotely. There is no available exploit.

It is advisable to upgrade the affected component.