Количество 71
Количество 71
CVE-2026-39835
SSH servers which use CertChecker as a public key callback without set ...
CVE-2026-39832
When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.
CVE-2026-39832
When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.
CVE-2026-39832
When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.
CVE-2026-39832
Invoking agent constraints dropped when forwarding keys in golang.org/x/crypto/ssh/agent
CVE-2026-39832
When adding a key to a remote agent constraint extensions such as rest ...
GHSA-78mq-xcr3-xm33
golang.org/x/crypto is vulnerable to invoking server panic during CheckHostKey/Authenticate flow
ROS-20260709-73-0027
Уязвимость portainer-ce
GHSA-f5wc-c3c7-36mc
golang.org/x/crypto doesn't drop invoking agent constraints when forwarding keys
RLSA-2026:38504
Important: container-tools:rhel8 security update
ELSA-2026-38504
ELSA-2026-38504: container-tools:ol8 security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-39835 SSH servers which use CertChecker as a public key callback without set ... | CVSS3: 5.3 | 1% Низкий | 2 месяца назад | |
CVE-2026-39832 When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them. | CVSS3: 9.1 | 1% Низкий | 2 месяца назад | |
CVE-2026-39832 When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them. | CVSS3: 8.7 | 1% Низкий | 2 месяца назад | |
CVE-2026-39832 When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them. | CVSS3: 9.1 | 1% Низкий | 2 месяца назад | |
CVE-2026-39832 Invoking agent constraints dropped when forwarding keys in golang.org/x/crypto/ssh/agent | CVSS3: 9.1 | 1% Низкий | 2 месяца назад | |
CVE-2026-39832 When adding a key to a remote agent constraint extensions such as rest ... | CVSS3: 9.1 | 1% Низкий | 2 месяца назад | |
GHSA-78mq-xcr3-xm33 golang.org/x/crypto is vulnerable to invoking server panic during CheckHostKey/Authenticate flow | CVSS3: 5.3 | 1% Низкий | около 1 месяца назад | |
ROS-20260709-73-0027 Уязвимость portainer-ce | CVSS3: 8.7 | 1% Низкий | 22 дня назад | |
GHSA-f5wc-c3c7-36mc golang.org/x/crypto doesn't drop invoking agent constraints when forwarding keys | CVSS3: 9.1 | 1% Низкий | около 1 месяца назад | |
RLSA-2026:38504 Important: container-tools:rhel8 security update | 18 дней назад | |||
ELSA-2026-38504 ELSA-2026-38504: container-tools:ol8 security update (IMPORTANT) | 16 дней назад |
Уязвимостей на страницу