MEDIUMcrates.io

Russh: client wrong-length X25519 `clone_from_slice` panic (pre-auth DoS)

Russh: client wrong-length X25519 `clone_from_slice` panic (pre-auth DoS)

CVE-2026-73429Published 4 weeks agoUpdated 1 week agoSource: OSV

Affected packages

  • russh

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

Russh: client wrong-length X25519 `clone_from_slice` panic (pre-auth DoS) | HackTribune