Логотип exploitDog
bind:CVE-2025-4658
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-4658

Количество 4

Количество 4

ubuntu логотип

CVE-2025-4658

9 месяцев назад

Versions of OpenPubkey library prior to 0.10.0 contained a vulnerability that would allow a specially crafted JWS to bypass signature verification. As OPKSSH depends on the OpenPubkey library for authentication, this vulnerability in OpenPubkey also applies to OPKSSH versions prior to 0.5.0 and would allow an attacker to bypass OPKSSH authentication.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2025-4658

9 месяцев назад

Versions of OpenPubkey library prior to 0.10.0 contained a vulnerability that would allow a specially crafted JWS to bypass signature verification. As OPKSSH depends on the OpenPubkey library for authentication, this vulnerability in OpenPubkey also applies to OPKSSH versions prior to 0.5.0 and would allow an attacker to bypass OPKSSH authentication.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2025-4658

9 месяцев назад

Versions of OpenPubkey library prior to 0.10.0 contained a vulnerabil ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-56wx-66px-9j66

9 месяцев назад

OPKSSH Vulnerable to Authentication Bypass

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-4658

Versions of OpenPubkey library prior to 0.10.0 contained a vulnerability that would allow a specially crafted JWS to bypass signature verification. As OPKSSH depends on the OpenPubkey library for authentication, this vulnerability in OpenPubkey also applies to OPKSSH versions prior to 0.5.0 and would allow an attacker to bypass OPKSSH authentication.

CVSS3: 9.8
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-4658

Versions of OpenPubkey library prior to 0.10.0 contained a vulnerability that would allow a specially crafted JWS to bypass signature verification. As OPKSSH depends on the OpenPubkey library for authentication, this vulnerability in OpenPubkey also applies to OPKSSH versions prior to 0.5.0 and would allow an attacker to bypass OPKSSH authentication.

CVSS3: 9.8
0%
Низкий
9 месяцев назад
debian логотип
CVE-2025-4658

Versions of OpenPubkey library prior to 0.10.0 contained a vulnerabil ...

CVSS3: 9.8
0%
Низкий
9 месяцев назад
github логотип
GHSA-56wx-66px-9j66

OPKSSH Vulnerable to Authentication Bypass

0%
Низкий
9 месяцев назад

Уязвимостей на страницу