Out-of-Bounds Stack Write Vulnerability in Swift NIO SSH by Apple
CVE-2026-43798
9.8CRITICAL
What is CVE-2026-43798?
A crafted SSH message can exploit an out-of-bounds stack write vulnerability in applications built on swift-nio-ssh. This allows an unauthenticated network attacker to manipulate memory, leading to unpredictable behavior or service disruption. The issue has been addressed in swift-nio-ssh version 0.14.1, and it is essential for users to upgrade to this version to ensure application security.
Affected Version(s)
swift-nio-ssh 0 < 0.14.1