Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f6c7-fj8h-5898

Опубликовано: 02 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.2

Описание

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

EPSS

Процентиль: 7%
0.00176
Низкий

4.2 Medium

CVSS3

Дефекты

CWE-670

Связанные уязвимости

CVSS3: 4.2
ubuntu
6 месяцев назад

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

CVSS3: 4.8
redhat
6 месяцев назад

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

CVSS3: 4.2
nvd
6 месяцев назад

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

CVSS3: 4.2
msrc
6 месяцев назад

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

CVSS3: 4.2
debian
6 месяцев назад

OpenSSH before 10.3 mishandles the authorized_keys principals option i ...

EPSS

Процентиль: 7%
0.00176
Низкий

4.2 Medium

CVSS3

Дефекты

CWE-670