Executive brief
ConnectBot SSH Client Library: Excessive allocation and integer overflow in DER private-key parsing
Affected products
- Maven org.connectbot.sshlib:sshlib
Junglewise Threat Intelligence
CVE-2026-54697 · Severity: medium · CVSS 4 · Published 2026-06-12
Vendors: Maven.
ConnectBot SSH Client Library: Excessive allocation and integer overflow in DER private-key parsing