PT-2025-7168 · Openssh+13 · Openssh+13
Published
2025-02-17
·
Updated
2026-04-09
·
CVE-2025-26465
CVSS v2.0
7.1
High
| Vector | AV:N/AC:H/Au:N/C:C/I:C/A:N |
Name of the Vulnerable Software and Affected Versions
OpenSSH versions 6.8p1 through 9.9p1
Description
A vulnerability was found in OpenSSH when the VerifyHostKeyDNS option is enabled, allowing a machine-in-the-middle attack to be performed by a malicious machine impersonating a legitimate server. This issue occurs due to how OpenSSH mishandles error codes in specific conditions when verifying the host key. For an attack to be considered successful, the attacker needs to manage to exhaust the client's memory resource first, turning the attack complexity high. The vulnerability enables credential theft, data breaches, and unauthorized access, potentially violating compliance.
Recommendations
For OpenSSH versions 6.8p1 through 9.9p1, update to OpenSSH 9.9p2 or later to fix the vulnerability. As a temporary workaround, consider disabling the VerifyHostKeyDNS option until a patch is available. Restrict access to SSH traffic and monitor for abnormal patterns to stop potential attacks early. Enforce strict connection rate limits to prevent denial-of-service attacks.
Exploit
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Almalinux
Astra Linux
Centos
Freebsd
Ibm Aix
Linuxmint
Apple Macos
Openssh
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu