CVE-2026-55655

Published: June 24, 2026Last modified: July 15, 2026

Description

A flaw was found in OpenSSH. A local unprivileged attacker on a Linux client host can hijack client-side X11 forwarding connections. This is possible by pre-binding the preferred abstract X socket name when X11 forwarding is enabled and a local UNIX-domain X socket is used. A successful attack can compromise the confidentiality of forwarded X11 traffic, including sensitive window contents and input, and may allow some manipulation of the forwarded session.

Severity score breakdown

ParameterValue
Base score6.1
Attack VectorLOCAL
Attack complexityLOW
Privileges requiredNONE
User interactionREQUIRED
ScopeUNCHANGED
ConfidentialityHIGH
Integrity impactLOW
Availability impactNONE
VectorCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:N

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSopensshNot affected (9.1_p1-r3)
25 LTSopensshNot affected (10.0_p1-r7)
StreamopensshNot affected (9.3_p1-r7)
Hardened Containers23 LTSopensshNot affected (9.1_p1-r3)
25 LTSopensshNot affected (10.0_p1-r7)
StreamopensshNot affected (9.3_p1-r7)

References

ON THIS PAGE