PT-2025-7168 · Openssh+13 · Openssh+13

Published

2025-02-17

·

Updated

2026-04-09

·

CVE-2025-26465

CVSS v2.0

7.1

High

VectorAV:N/AC:H/Au:N/C:C/I:C/A:N
Name of the Vulnerable Software and Affected Versions OpenSSH versions 6.8p1 through 9.9p1
Description A vulnerability was found in OpenSSH when the VerifyHostKeyDNS option is enabled, allowing a machine-in-the-middle attack to be performed by a malicious machine impersonating a legitimate server. This issue occurs due to how OpenSSH mishandles error codes in specific conditions when verifying the host key. For an attack to be considered successful, the attacker needs to manage to exhaust the client's memory resource first, turning the attack complexity high. The vulnerability enables credential theft, data breaches, and unauthorized access, potentially violating compliance.
Recommendations For OpenSSH versions 6.8p1 through 9.9p1, update to OpenSSH 9.9p2 or later to fix the vulnerability. As a temporary workaround, consider disabling the VerifyHostKeyDNS option until a patch is available. Restrict access to SSH traffic and monitor for abnormal patterns to stop potential attacks early. Enforce strict connection rate limits to prevent denial-of-service attacks.

Exploit

Fix

DoS

Weakness Enumeration

Related Identifiers

ALSA-2025:16823
ALSA-2025:6993
ALSA-2025_16823
ALSA-2025_6993
ALT-PU-2025-3001
ALT-PU-2025-3003
ALT-PU-2025-3009
ALT-PU-2025-3011
ALT-PU-2025-3015
ALT-PU-2025-3025
ALT-PU-2025-3193
ALT-PU-2025-3292
ALT-PU-2025-3298
ALT-PU-2025-3300
AZL-56891
AZL-56894
BDU:2025-01959
CESA-2025_16823
CVE-2025-26465
DLA-4057-1
DSA-5868-1
FREEBSD-SA-25_05
INFSA-2025_16823
INFSA-2025_6993
JLSEC-2026-72
MGASA-2025-0080
OESA-2025-1314
OESA-2025-1315
OESA-2025-1316
OESA-2025-1439
OESA-2025-1440
OPENSUSE-SU-2025:14820-1
OPENSUSE-SU-2025_0585-1
OPENSUSE-SU-2025_0605-1
RHSA-2025:16823
RHSA-2025:3837
RHSA-2025:6993
RHSA-2025_16823
RHSA-2025_6993
SUSE-SU-2025:0585-1
SUSE-SU-2025:0605-1
SUSE-SU-2025:0659-1
SUSE-SU-2025:0744-1
SUSE-SU-2025:20160-1
SUSE-SU-2025:20226-1
SUSE-SU-2025_0585-1
SUSE-SU-2025_0605-1
SUSE-SU-2025_0659-1
SUSE-SU-2025_0744-1
USN-7270-1
USN-7270-2

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Freebsd
Ibm Aix
Linuxmint
Apple Macos
Openssh
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu