Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-35414

Опубликовано: 05 апр. 2026
Источник: msrc
CVSS3: 4.2
EPSS Низкий

Описание

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

Обновления

ПродуктСтатьяОбновление
azl3 openssh 9.8p1-6 on Azure Linux 3.0
-
cbl2 openssh 8.9p1-9 on CBL-Mariner 2.0

Показывать по

EPSS

Процентиль: 7%
0.00176
Низкий

4.2 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.2
ubuntu
6 месяцев назад

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

CVSS3: 4.8
redhat
6 месяцев назад

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

CVSS3: 4.2
nvd
6 месяцев назад

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

CVSS3: 4.2
debian
6 месяцев назад

OpenSSH before 10.3 mishandles the authorized_keys principals option i ...

CVSS3: 4.2
github
6 месяцев назад

OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list in conjunction with a Certificate Authority that makes certain use of comma characters.

EPSS

Процентиль: 7%
0.00176
Низкий

4.2 Medium

CVSS3