CVE-2025-11625: Host verification bypass and credential leak
Published Oct 21, 2025
·Updated
Improper host authentication vulnerability in wolfSSH version 1.4.20 and earlier clients that allows authentication bypass and leaking of clients credentials.
Affected Software
2 affected components
wolfSSL wolfSSH<1.4.20
WolfSSH WolfSSH<=1.4.20
Remediation
Information
Applying this patch ( https://patch-diff.githubusercontent.com/raw/wolfSSL/wolfssh/pull/840.diff ) to versions 1.4.20 and older or updating version of wolfSSH used.
Event History
Oct 21, 2025
CVE Published
via MITRE·01:25 PM
Data Sourced
via MITRE·01:25 PM
RemedyDescriptionWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-11625?
CVE-2025-11625 is classified as a medium severity vulnerability due to its potential for authentication bypass.
2
How do I fix CVE-2025-11625?
To fix CVE-2025-11625, upgrade wolfSSH to version 1.4.21 or later.
3
What type of vulnerability is CVE-2025-11625?
CVE-2025-11625 is an improper host authentication vulnerability.
4
What versions of wolfSSH are affected by CVE-2025-11625?
CVE-2025-11625 affects wolfSSH version 1.4.20 and earlier.
5
Can CVE-2025-11625 lead to credential leaks?
Yes, CVE-2025-11625 can lead to leaking of client credentials due to authentication bypass.