gpp_maybe
Security update for openssh
SUSE-SLE-Module-Desktop-Applications-15-SP7-2026-2371
This update for openssh fixes the following issues - CVE-2026-3497: information disclosure or denial of service due to uninitialized variables (bsc#1259642). - CVE-2026-35385: a file downloaded by scp may be installed setuid or setgid (bsc#1261427). - CVE-2026-35388: omitted connection multiplexing confirmation for proxy-mode multiplexing sessions (bsc#1261441). - CVE-2026-35414: mishandling of authorized_keys principals option (bsc#1261430). - potential security issue when validating mac (bsc#1264568).
-
Release DateJun 11 2026
-
ReferencesBugzilla: 1259642, 1261427, 1261430, 1261441, 1264568
CVEs: CVE-2026-3497, CVE-2026-35385, CVE-2026-35388, CVE-2026-35414 -
Typesecurity
-
Severityimportant
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
Desktop Applications Module 15.7 ppc64le
-
Packagesopenssh-askpass-gnome
A GNOME-Based Passphrase Dialog for OpenSSH9.6p1-150600.6.42.1 lock rpm lock src
Desktop Applications Module 15.7 aarch64
-
Packagesopenssh-askpass-gnome
A GNOME-Based Passphrase Dialog for OpenSSH9.6p1-150600.6.42.1 lock rpm lock src
Desktop Applications Module 15.7 s390x
-
Packagesopenssh-askpass-gnome
A GNOME-Based Passphrase Dialog for OpenSSH9.6p1-150600.6.42.1 lock rpm lock src
Desktop Applications Module 15.7 x86_64
-
Packagesopenssh-askpass-gnome
A GNOME-Based Passphrase Dialog for OpenSSH9.6p1-150600.6.42.1 lock rpm lock src