system environment/daemons

openssh-server - An open source SSH server daemon

Website: http://www.openssh.com/portable.html
License: BSD
Vendor: Rocky
Description:
OpenSSH is a free version of SSH (Secure SHell), a program for logging
into and executing commands on a remote machine. This package contains
the secure shell daemon (sshd). The sshd daemon allows SSH clients to
securely connect to your SSH server.

Packages

openssh-server-8.0p1-29.el8_10.x86_64 [495 KiB] Changelog by Zoltan Fridrich (2026-04-13):
- CVE-2026-35385: Fix privilege escalation via scp legacy protocol
  when not in preserving file mode
  Resolves: RHEL-164743
- CVE-2026-35388: Add connection multiplexing confirmation for proxy-mode
  multiplexing sessions
  Resolves: RHEL-166240
- CVE-2026-35387: Fix incomplete application of PubkeyAcceptedAlgorithms
  and HostbasedAcceptedAlgorithms with regard to ECDSA keys
  Resolves: RHEL-166224
- CVE-2026-35414: Fix mishandling of authorized_keys principals option
  Resolves: RHEL-166192
- CVE-2026-35386: Add validation rules to usernames and hostnames
  set for ProxyJump/-J on the commandline
  Resolves: RHEL-166208
openssh-server-8.0p1-28.el8_10.x86_64 [494 KiB] Changelog by Zoltan Fridrich (2026-03-16):
- CVE-2026-3497: Fix information disclosure or denial of service due
  to uninitialized variables in gssapi-keyex
  Resolves: RHEL-155814
openssh-server-8.0p1-27.el8_10.x86_64 [494 KiB] Changelog by Zoltan Fridrich (2025-12-10):
- CVE-2025-61984: Reject usernames with control characters
  Resolves: RHEL-128400
- CVE-2025-61985: Reject URL-strings with NULL characters
  Resolves: RHEL-128390

Listing created by Repoview-0.6.6-16.el8.sme