PT-2025-15885 · Openssh+8 · Openssh+8

Jann Horn

·

Published

2025-04-09

·

Updated

2026-04-09

·

CVE-2025-32728

CVSS v3.1

4.3

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions: OpenSSH versions prior to 10.0
Description: The issue arises from the DisableForwarding directive in sshd not following its documentation. Specifically, it does not properly disable X11 and agent forwarding as stated.
Recommendations: For versions prior to 10.0, update to version 10.0 or later to resolve the issue.

Fix

Weakness Enumeration

Related Identifiers

ALSA-2025:20126
ALT-PU-2025-12691
AZL-59775
AZL-59888
BDU:2025-04768
CVE-2025-32728
DLA-4156-1
JLSEC-2026-73
MGASA-2025-0157
OESA-2025-1439
OESA-2025-1440
OESA-2025-1550
OESA-2025-1664
OESA-2025-1665
OPENSUSE-SU-2025:15091-1
OPENSUSE-SU-2025_01638-1
OPENSUSE-SU-2025_1576-1
RHSA-2025:20126
SUSE-SU-2025:01638-1
SUSE-SU-2025:01638-2
SUSE-SU-2025:1576-1
SUSE-SU-2025_01638-1
SUSE-SU-2025_01638-2
SUSE-SU-2025_1576-1
USN-7457-1

Affected Products

Alt Linux
Astra Linux
Debian
Ibm Aix
Linuxmint
Openssh
Red Os
Suse
Ubuntu