Количество 52
Количество 52
RLSA-2026:37410
Important: buildah security update
ELSA-2026-37410
ELSA-2026-37410: buildah security update (IMPORTANT)
RLSA-2026:36199
Important: buildah security update
ELSA-2026-36199
ELSA-2026-36199: buildah security update (IMPORTANT)
RLSA-2026:37123
Important: podman security, bug fix, and enhancement update
ELSA-2026-37123
ELSA-2026-37123: podman security, bug fix, and enhancement update (IMPORTANT)
RLSA-2026:37072
Important: podman security, bug fix, and enhancement update
ELSA-2026-37072
ELSA-2026-37072: podman security, bug fix, and enhancement update (IMPORTANT)
openSUSE-SU-2026:20838-1
Security update for hauler
openSUSE-SU-2026:20833-1
Security update for trivy
CVE-2026-39835
SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.
CVE-2026-39835
SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.
CVE-2026-39835
SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.
CVE-2026-39835
Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh
CVE-2026-39835
SSH servers which use CertChecker as a public key callback without set ...
openSUSE-SU-2026:21069-1
Security update for google-guest-agent
openSUSE-SU-2026:20834-1
Security update for apptainer
CVE-2026-39832
When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.
CVE-2026-39832
When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.
CVE-2026-39832
When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2026:37410 Important: buildah security update | 21 день назад | |||
ELSA-2026-37410 ELSA-2026-37410: buildah security update (IMPORTANT) | 21 день назад | |||
RLSA-2026:36199 Important: buildah security update | 23 дня назад | |||
ELSA-2026-36199 ELSA-2026-36199: buildah security update (IMPORTANT) | 9 дней назад | |||
RLSA-2026:37123 Important: podman security, bug fix, and enhancement update | 21 день назад | |||
ELSA-2026-37123 ELSA-2026-37123: podman security, bug fix, and enhancement update (IMPORTANT) | 21 день назад | |||
RLSA-2026:37072 Important: podman security, bug fix, and enhancement update | 21 день назад | |||
ELSA-2026-37072 ELSA-2026-37072: podman security, bug fix, and enhancement update (IMPORTANT) | 8 дней назад | |||
openSUSE-SU-2026:20838-1 Security update for hauler | 2 месяца назад | |||
openSUSE-SU-2026:20833-1 Security update for trivy | 2 месяца назад | |||
CVE-2026-39835 SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil. | CVSS3: 5.3 | 1% Низкий | 2 месяца назад | |
CVE-2026-39835 SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil. | CVSS3: 7.5 | 1% Низкий | 2 месяца назад | |
CVE-2026-39835 SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil. | CVSS3: 5.3 | 1% Низкий | 2 месяца назад | |
CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh | CVSS3: 5.3 | 1% Низкий | 2 месяца назад | |
CVE-2026-39835 SSH servers which use CertChecker as a public key callback without set ... | CVSS3: 5.3 | 1% Низкий | 2 месяца назад | |
openSUSE-SU-2026:21069-1 Security update for google-guest-agent | около 1 месяца назад | |||
openSUSE-SU-2026:20834-1 Security update for apptainer | 2 месяца назад | |||
CVE-2026-39832 When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them. | CVSS3: 9.1 | 1% Низкий | 2 месяца назад | |
CVE-2026-39832 When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them. | CVSS3: 8.7 | 1% Низкий | 2 месяца назад | |
CVE-2026-39832 When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them. | CVSS3: 9.1 | 1% Низкий | 2 месяца назад |
Уязвимостей на страницу