PT-2026-29834 · Openbsd · Openssh
Florian Kohnhäuser
·
Published
2026-04-02
·
Updated
2026-04-02
·
CVE-2026-35387
CVSS v3.1
3.1
Low
| AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N |
OpenSSH before 10.3 can use unintended ECDSA algorithms. Listing of any ECDSA algorithm in PubkeyAcceptedAlgorithms or HostbasedAcceptedAlgorithms is misinterpreted to mean all ECDSA algorithms.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Openssh