enterprise_linux_for_ibm_z_systems_els vulnerabilities
CVEs whose affected-version data names the enterprise_linux_for_ibm_z_systems_els package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
4 CVEsRSS
CVE-2026-59849Low· 3.1A flaw was found in libssh
A flaw was found in libssh. Logic errors in automatic certificate-based public key authentication can cause libssh clients to loop indefinitely when configured certificates are missing or repeatedly rejected by a server, leading to denia…
CVE-2026-59842Low· 3.7A flaw was found in libssh
A flaw was found in libssh. During server-side GSSAPI key exchange, a client-supplied Curve25519 public key shorter than the expected length is copied without proper length validation, leading to an out-of-bounds heap read. This could al…
CVE-2026-15370Medium· 6.7A flaw was found in libssh
A flaw was found in libssh. During SFTP server directory listing, the longname field is constructed with unsafe concatenation into a fixed-size stack buffer. When a client causes the server to list attacker-controlled filenames, sufficie…
CVE-2026-42009High· 7.5A flaw was found in gnutls
A flaw was found in gnutls. A remote attacker could exploit an issue in the Datagram Transport Layer Security (DTLS) packet reordering logic. The comparator function, responsible for ordering DTLS packets by sequence numbers, did not cor…