PT-2026-29835 · Openbsd+4 · Openssh+4

·

CVE-2026-35388

·

Published

2026-04-02

·

Updated

2026-06-24

CVSS v3.1

2.5

Low

VectorAV:L/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions OpenSSH versions prior to 10.3
Description OpenSSH versions before 10.3 do not confirm connection multiplexing in proxy-mode multiplexing sessions.
Recommendations Update to version 10.3 or later.

Exploit

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:13380
ALSA-2026:13381
ALSA-2026:13383
ALSA-2026:19069
ALSA-2026:19219
CVE-2026-35388
ECHO-15A9-2872-255F
JLSEC-2026-77
OESA-2026-1963
OPENSUSE-SU-2026:10937-1
OPENSUSE-SU-2026:21044-1
RHSA-2026:12389
RHSA-2026:13380
RHSA-2026:13381
RHSA-2026:13383
RHSA-2026:19069
RHSA-2026:19219
SUSE-SU-2026:22067-1
SUSE-SU-2026:22268-1
SUSE-SU-2026:22352-1
SUSE-SU-2026:2371-1
SUSE-SU-2026:2375-1
SUSE-SU-2026:2430-1
USN-8222-1

Affected Products

Ibm Aix
Linuxmint
Openssh
Rocky Linux
Ubuntu