在 OpenSSH 10.6 版本之前的 sshd 和 ssh 中,在对高度压缩的数据进行解压缩时,未检查最大数据包长度是否被超过。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-106552 | 4.2 MEDIUM | OpenSSH sftp远程目录遍历漏洞 |
| CVE-2026-106582 | 3.7 LOW | OpenSSH <10.6 压缩漏洞 |
| CVE-2026-106587 | 3.6 LOW | OpenSSH 10.6前sshd配置项解析漏洞 |
| CVE-2026-106588 | 3.1 LOW | OpenSSH 10.6及以前macOS 27+沙盒丢失漏洞 |
| CVE-2026-106589 | 2.9 LOW | OpenSSH 10.6及以下版本权限提升漏洞 |
| CVE-2026-106584 | 2.5 LOW | OpenSSH<10.6证书过期时间错误 |
| CVE-2026-106586 | 2.5 LOW | OpenSSH <10.6 restricted关键字隧道转发绕过 |
| CVE-2026-106553 | 2.2 LOW | OpenSSH低于10.6版本GSSAPI凭证持久化漏洞 |
| CVE-2026-106555 | 2.2 LOW | OpenSSH <10.6 GSSAPI认证状态持久化漏洞 |
No comments yet