Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f6c7-fj8h-5898

Опубликовано: 02 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.2

Описание

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

EPSS

Процентиль: 7%
0.00176
Низкий

4.2 Medium

CVSS3

Дефекты

CWE-670

Связанные уязвимости

CVSS3: 4.2
ubuntu
4 месяца назад

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

CVSS3: 4.8
redhat
4 месяца назад

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

CVSS3: 4.2
nvd
4 месяца назад

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

msrc
4 месяца назад

Описание отсутствует

CVSS3: 4.2
debian
4 месяца назад

OpenSSH before 10.3 mishandles the authorized_keys principals option i ...

EPSS

Процентиль: 7%
0.00176
Низкий

4.2 Medium

CVSS3

Дефекты

CWE-670