CVE-2025-22869
SSH servers which implement file transfer protocols are vulnerable to a denial of service attack from clients which complete the key exchange slowly, or not at all, causing pending content to be read into memory, but never transmitted.
- Published Feb 26, 2025
- CVSS 7.5 high
- 0.9% chance of exploitation in the next 30 days (EPSS)
- A fix is available