Threats Tagged 'cve-2026-53422'
View all threats tagged with 'cve-2026-53422'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-53422'
Click on any threat for detailed analysis and mitigation recommendations
Erlang is a programming language and runtime system for building massively scalable soft real-time systems with requirements on high availability. OTP is a set of Erlang libraries, which consists of the Erlang runtime system, a number of ready-to-use components mainly written in Erlang. Packet size is not verified properly for SFTP packets. As a result when multiple SSH packets (conforming to max SSH packet size) are received by ssh, they might be combined into an SFTP packet which will exceed the max allowed packet size and potentially cause large amount of memory to be allocated. Note that situation described above can only happen for successfully authenticated users after completing the SSH handshake. This issue has been patched in OTP versions 27.2.4, 26.2.5.9, and 25.3.2.18. There are no known workarounds for this vulnerability. Join the discussion | CVE Database V5 | 08/20/2026, 00:00:00 UTC Added: 11/03/2025, 20:49:00 UTC |
0 This update includes the following RPMs: erlang27: * erlang27-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-asn1-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-common_test-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-compiler-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-crypto-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-debugger-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-dialyzer-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-diameter-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-edoc-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-eldap-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-erl_interface-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-erts-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-et-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-eunit-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-examples-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-ftp-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-gdb-tools-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-inets-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-jinterface-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-kernel-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-megaco-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-mnesia-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-observer-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-odbc-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-os_mon-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-parsetools-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-public_key-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-reltool-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-runtime_tools-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-sasl-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-snmp-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-ssh-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-ssl-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-stdlib-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-syntax_tools-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-tftp-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-tools-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-wx-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-xmerl-27.3.4.14-1.hum1 (aarch64, x86_64) * erlang27-27.3.4.14-1.hum1.src (src) Join the discussion | GCVE Database | 07/06/2026, 15:28:28 UTC Added: 07/10/2026, 09:25:26 UTC |
Observable Response Discrepancy vulnerability in Erlang OTP ssh (ssh_sftpd module) allows an authenticated SFTP user to enumerate the existence of files and directories outside the configured root directory. The SSH_FXP_REALPATH handler in ssh_sftpd calls relate_file_name/3 with Canonicalize=false, unlike every other SFTP operation handler. This allows .. components in the requested path to bypass the is_within_root/2 check without being resolved. The un-canonicalized path then enters resolve_symlinks/2, which walks up the directory tree above the configured root and issues read_link() syscalls on arbitrary filesystem paths. An authenticated SFTP client can exploit this by sending a REALPATH request with a crafted traversal path. The server response differs depending on whether the target path exists on the host filesystem (SSH_FXP_NAME when the path resolves successfully, SSH_FX_NO_SUCH_FILE when it does not). This creates a path-existence oracle that an attacker can use to enumerate the filesystem structure outside the configured root, including the existence of sensitive files, directories, and mount points. The vulnerability leaks only the existence of paths. No file contents, credentials, or write access are obtainable through this issue alone. The information gained may assist further attacks when combined with other vulnerabilities. This vulnerability is associated with program files lib/ssh/src/ssh_sftpd.erl and program routine ssh_sftpd:handle_op/4. This issue affects OTP from OTP 17.0 before OTP 29.0.3, OTP 28.5.0.3 and OTP 27.3.4.14, corresponding to ssh from 3.0.1 before 6.0.2, 5.5.2.2 and 5.2.11.9. Join the discussion | CVE Database V5 | 07/02/2026, 16:06:03 UTC Added: 07/02/2026, 18:06:47 UTC |
Incorrect Authorization vulnerability in Erlang OTP (inets modules) allows unauthenticated access to CGI scripts protected by directory rules when served via script_alias. When script_alias maps a URL prefix to a directory outside DocumentRoot, mod_auth evaluates directory-based access controls against the DocumentRoot-relative path while mod_cgi executes the script at the ScriptAlias-resolved path. This path mismatch allows unauthenticated access to CGI scripts that directory rules were meant to protect. This vulnerability is associated with program files lib/inets/src/http_server/mod_alias.erl, lib/inets/src/http_server/mod_auth.erl, and lib/inets/src/http_server/mod_cgi.erl. This issue affects OTP from OTP 17.0 before OTP 26.2.5.19, OTP 27.3.4.10, and OTP 28.4.2, corresponding to inets from 5.10 before 9.1.0.6, 9.3.2.4, and 9.6.2. Whether OTP before OTP 17.0, corresponding to inets before 5.10, is affected is unknown. Join the discussion | CVE Database V5 | 04/07/2026, 12:28:16 UTC Added: 04/07/2026, 12:46:10 UTC |
Showing 1 to 4 of 4 results