VYPR
Critical severity9.8NVD Advisory· Published Oct 21, 2025· Updated Jun 17, 2026

CVE-2025-11624

CVE-2025-11624

Description

Potential stack buffer overwrite on the SFTP server side when receiving a malicious packet that has a handle size larger than the system handle or file descriptor size, but smaller than max handle size allowed.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Wolfssh/Wolfssh2 versions
    cpe:2.3:a:wolfssh:wolfssh:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:wolfssh:wolfssh:*:*:*:*:*:*:*:*range: >=1.3.0,<=1.4.20
    • (no CPE)range: 1.3.0
  • WolfSSL/Wolfsshllm-fuzzy

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.