Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2025-20126-0

Опубликовано: 25 нояб. 2025
Источник: oracle-oval
Платформа: Oracle Linux 10

Описание

ELSA-2025-20126-0: openssh security update (MODERATE)

[9.9p1-11.0.1]

  • Upstream references found with /usr/bin/ssh [Orabug: 37824421]

[9.9p1-11]

  • Move the redhat help message to debug1 log level Resolves: RHEL-93957

[9.9p1-10]

  • Support for authentication indicators in OpenSSH Resolves: RHEL-40790

[9.9p1-9]

  • CVE-2025-32728: Fix logic error in DisableForwarding option Resolves: RHEL-86819
  • Provide better error for non-supported private keys Resolves: RHEL-68124
  • Ignore bad hostkeys in known_hosts file Resolves: RHEL-83644

[9.9p1-8]

  • OpenSSH should not use its own implementation of MLKEM Resolves: RHEL-58252
  • Correct processing of Compression directive Resolves: RHEL-68346
  • Supress systemd warning Resolves: RHEL-84816

Обновленные пакеты

Oracle Linux 10

Oracle Linux aarch64

openssh-askpass

9.9p1-11.0.1.el10

openssh-keysign

9.9p1-11.0.1.el10

openssh

9.9p1-11.0.1.el10

openssh-clients

9.9p1-11.0.1.el10

openssh-keycat

9.9p1-11.0.1.el10

openssh-server

9.9p1-11.0.1.el10

Oracle Linux x86_64

openssh

9.9p1-11.0.1.el10

openssh-clients

9.9p1-11.0.1.el10

openssh-keycat

9.9p1-11.0.1.el10

openssh-server

9.9p1-11.0.1.el10

openssh-askpass

9.9p1-11.0.1.el10

openssh-keysign

9.9p1-11.0.1.el10

Связанные CVE

Связанные уязвимости

CVSS3: 4.3
ubuntu
9 месяцев назад

In sshd in OpenSSH before 10.0, the DisableForwarding directive does not adhere to the documentation stating that it disables X11 and agent forwarding.

CVSS3: 4.3
redhat
9 месяцев назад

In sshd in OpenSSH before 10.0, the DisableForwarding directive does not adhere to the documentation stating that it disables X11 and agent forwarding.

CVSS3: 4.3
nvd
9 месяцев назад

In sshd in OpenSSH before 10.0, the DisableForwarding directive does not adhere to the documentation stating that it disables X11 and agent forwarding.

CVSS3: 3.8
msrc
9 месяцев назад

Описание отсутствует

CVSS3: 4.3
debian
9 месяцев назад

In sshd in OpenSSH before 10.0, the DisableForwarding directive does n ...