wolfSSH 1.6.0 Fixes Five Flaws Including Critical MITM ECDSA Host-Key Bypass; Canada's Cyber Centre Urges Updates
wolfSSL's wolfSSH 1.6.0 (released October 6, 2026) patches five vulnerabilities in versions through 1.5.0 — led by a critical man-in-the-middle host-key verification bypass (CVE-2026-16516, CVSS v4 9.0) — and Canada's Cyber Centre followed with advisory…
wolfSSL published wolfSSH 1.6.0 on October 6, 2026, fixing five vulnerabilities affecting versions through 1.5.0: one critical, one high, and three medium. The critical flaw, CVE-2026-16516 (CVSS v4 9.0 per GBHackers), allows an active man-in-the-middle attacker to replace the server's ECDSA host key with a key on a different curve so that signature checks succeed — but only when the application uses a weak or permissive public-key-checking callback, so not every client is exposed. The high-severity CVE-2026-83540 (CVSS 7.7 per GBHackers) affects Windows wolfSSHd 1.4.15 through 1.5.0, where shared logon tokens can let one authenticated — GBHackers characterizes it as lower-privileged — user take on another account's identity across concurrent sessions. The three medium fixes address unauthenticated Diffie-Hellman group-exchange CPU abuse (CVE-2026-84897), policy-bypass TCP forwarding (CVE-2026-81535), and an authenticated SFTP NUL overflow (CVE-2026-83742), which GBHackers describes as a one-byte SFTP path overflow. Version 1.6.0 also enables strict key exchange — GBHackers notes it is on by default and mitigates the Terrapin attack (CVE-2023-48795) — and requires 2048-bit minimum RSA user keys. On October 7, 2026, the Canadian Centre for Cyber Security issued advisory AV26-1016 covering wolfSSH versions before 1.6.0 and directing administrators to the 1.6.0 release; that bulletin names no CVE identifiers and gives no technical detail. No source reports active exploitation. The reports do not conflict — the Canadian bulletin is a general update advisory while Cyber Security News and GBHackers supply the underlying CVE detail, differing only in granularity (e.g., GBHackers adds CVSS scores and the Terrapin link).
- wolfSSL released wolfSSH 1.6.0 on October 6, 2026, fixing five vulnerabilities affecting versions through 1.5.0: one critical, one high, and three medium.
- CVE-2026-16516 (critical; CVSS v4 9.0 per GBHackers): a man-in-the-middle can swap the server's ECDSA host key to a different curve so signature checks succeed, but only if the application uses a weak public-key-checking callback.
- CVE-2026-83540 (high; CVSS 7.7 per GBHackers): affects Windows wolfSSHd 1.4.15 through 1.5.0, where shared logon tokens can give one authenticated (lower-privileged per GBHackers) user another account's identity across concurrent sessions.
- CVE-2026-84897: unauthenticated Diffie-Hellman group-exchange CPU abuse (medium).
Coverage timelineoldest first · each row is one article
- · 3d agowolfSSL security advisory (AV26-1016)
Canadian Centre for Cyber Security· 30
Canada's Cyber Centre warned that wolfSSH before 1.6.0 is vulnerable and urged administrators to update.
- · 2d agowolfSSH 1.6.0 Fixes 5 Security Flaws Including Critical MITM Host Key Verification Bypass
Cyber Security News· 48
wolfSSL released wolfSSH 1.6.0, fixing five flaws including a critical SSH host-key verification bypass.
- · 2d ago
Vulnerabilities in this storyAll →
- CVE-2023-487955.993%The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks…published · openbsd openssh
- CVE-2026-165169.0—ECDSA host-key curve confusion in wolfSSHpublished · wolfSSL wolfSSH