在 OpenSSH 10.6 及更早版本的 sshd 中,在 QNX 6 和 SCO OpenServer 5 等特定环境下,sshd 会话可能会意外地获得 root 权限。此问题与 GatewayPorts 和 StreamLocalForwarding 配置选项有关,并且由于缺乏对文件描述符传递以及非特权分配 PTY 设备的支持所致。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-106585 | 6.5 MEDIUM | OpenSSH 10.6前解压缩漏洞 |
| CVE-2026-106552 | 4.2 MEDIUM | OpenSSH sftp远程目录遍历漏洞 |
| CVE-2026-106582 | 3.7 LOW | OpenSSH <10.6 压缩漏洞 |
| CVE-2026-106587 | 3.6 LOW | OpenSSH 10.6前sshd配置项解析漏洞 |
| CVE-2026-106588 | 3.1 LOW | OpenSSH 10.6及以前macOS 27+沙盒丢失漏洞 |
| CVE-2026-106584 | 2.5 LOW | OpenSSH<10.6证书过期时间错误 |
| CVE-2026-106586 | 2.5 LOW | OpenSSH <10.6 restricted关键字隧道转发绕过 |
| CVE-2026-106553 | 2.2 LOW | OpenSSH低于10.6版本GSSAPI凭证持久化漏洞 |
| CVE-2026-106555 | 2.2 LOW | OpenSSH <10.6 GSSAPI认证状态持久化漏洞 |
No comments yet