CVE-2026-55654

Published: June 24, 2026Last modified: July 15, 2026

Description

A flaw was found in OpenSSH. This vulnerability, a heap out-of-bounds read, occurs during the cleanup of GSSAPI (Generic Security Service Application Programming Interface) indicators when a trailing NULL termination is missing in the auth-indicators array. A remote attacker, under specific configurations involving GSSAPI authentication and a Kerberos environment, could exploit this to cause the SSH authentication path to crash or abort. This leads to a denial of service (DoS), impacting the availability of the SSH service.

Severity score breakdown

ParameterValue
Base score3.7
Attack VectorNETWORK
Attack complexityHIGH
Privileges requiredNONE
User interactionNONE
ScopeUNCHANGED
ConfidentialityNONE
Integrity impactNONE
Availability impactLOW
VectorCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSopensshNot affected (9.1_p1-r3)
25 LTSopensshNot affected (10.0_p1-r7)
StreamopensshNot affected (9.3_p1-r7)
Hardened Containers23 LTSopensshNot affected (9.1_p1-r3)
25 LTSopensshNot affected (10.0_p1-r7)
StreamopensshNot affected (9.3_p1-r7)

References

ON THIS PAGE