Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-73281

Опубликовано: 11 авг. 2026
Источник: debian
EPSS Низкий

Описание

In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, including operations that add tokens or use keys. This is caused by misinteraction between agent locking and the session-bind@openssh.com extension.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
opensshunfixedpackage
opensshno-dsatrixiepackage

Примечания

  • https://www.openwall.com/lists/oss-security/2026/08/12/1

  • https://www.openssh.org/releasenotes.html#10.5

EPSS

Процентиль: 5%
0.00158
Низкий

Связанные уязвимости

CVSS3: 3.5
ubuntu
17 дней назад

In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, including operations that add tokens or use keys. This is caused by misinteraction between agent locking and the session-bind@openssh.com extension.

CVSS3: 3.5
redhat
17 дней назад

In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, including operations that add tokens or use keys. This is caused by misinteraction between agent locking and the session-bind@openssh.com extension.

CVSS3: 3.5
nvd
17 дней назад

In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, including operations that add tokens or use keys. This is caused by misinteraction between agent locking and the session-bind@openssh.com extension.

msrc
14 дней назад

In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, including operations that add tokens or use keys. This is caused by misinteraction between agent locking and the session-bind@openssh.com extension.

CVSS3: 3.5
github
17 дней назад

In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, including operations that add tokens or use keys. This is caused by misinteraction between agent locking and the session-bind@openssh.com extension.

EPSS

Процентиль: 5%
0.00158
Низкий