| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: openssh-clients | Distribution: AlmaLinux |
| Version: 9.9p1 | Vendor: AlmaLinux |
| Release: 11.el9_8.alma.1 | Build date: Mon Sep 21 18:44:36 2026 |
| Group: Unspecified | Build host: arm64-builder01.almalinux.org |
| Size: 2814666 | Source RPM: openssh-9.9p1-11.el9_8.alma.1.src.rpm |
| Packager: AlmaLinux Packaging Team <packager@almalinux.org> | |
| Url: http://www.openssh.com/portable.html | |
| Summary: An open source SSH client applications | |
OpenSSH is a free version of SSH (Secure SHell), a program for logging into and executing commands on a remote machine. This package includes the clients necessary to make encrypted connections to SSH servers.
BSD
* Mon Sep 21 2026 Koichiro Iwao <meta@almalinux.org> - 9.9p1-11.alma.1
- Unpatch Red Hat help message
* Fri Aug 21 2026 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-11
- CVE-2026-73283: Complete the fix of security bypass due to incorrect
handling of forwarding and tunneling options
Resolves: RHEL-245416
- CVE-2026-73281: Fix misinteraction between agent locking and
the session-bind@openssh.com extension
Resolves: RHEL-245424
- CVE-2026-73282: Fix information disclosure and data corruption
via use-after-free in ssh client
Resolves: RHEL-245419
* Wed Aug 12 2026 Dmitry Belyavskiy <dbelyavs@redhat.com> - 9.9p1-10
- Fix CVE-2026-59995 OpenSSH: sftp client allows attacker to control downloaded
file location
Resolves: RHEL-236320
- Fix CVE-2026-59999 and CVE-2026-73283: Security bypass due to incorrect
handling of forwarding and tunneling options
Resolves: RHEL-236286
* Tue Jul 14 2026 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-9
- CVE-2026-59996: Fix remote glob result of ".." causing files to be placed
in unintended parent directories when scp performs remote-to-remote copy
via the local host
Resolves: RHEL-193178
- CVE-2026-60002: Fix use-after-free in cached hostkey during key re-exchange
Resolves: RHEL-193024
* Tue Jun 30 2026 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-8
- CVE-2026-55653: Fix double free in openssh DH-GEX client path during
FIPS known-group validation that leads to client-side denial of service
Resolves: RHEL-186439
- CVE-2026-55654: Fix heap out-of-bounds read during GSSAPI indicator
cleanup due to missing NULL terminator
Resolves: RHEL-185836
- CVE-2026-55655: Fix MITM of X11 forwarding via abstract UNIX socket
pre-binding
Resolves: RHEL-185854
* Mon Apr 13 2026 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-7
- CVE-2026-35385: Fix privilege escalation via scp legacy protocol
when not in preserving file mode
Resolves: RHEL-164753
- CVE-2026-35388: Add connection multiplexing confirmation for proxy-mode
multiplexing sessions
Resolves: RHEL-166250
- CVE-2026-35387: Fix incomplete application of PubkeyAcceptedAlgorithms
and HostbasedAcceptedAlgorithms with regard to ECDSA keys
Resolves: RHEL-166234
- CVE-2026-35414: Fix mishandling of authorized_keys principals option
Resolves: RHEL-166202
- CVE-2026-35386: Add validation rules to usernames and hostnames
set for ProxyJump/-J on the commandline
Resolves: RHEL-166218
* Thu Mar 26 2026 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-6
- Version bump
* Mon Mar 16 2026 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-5
- CVE-2026-3497: Fix information disclosure or denial of service due
to uninitialized variables in gssapi-keyex
Resolves: RHEL-155824
* Wed Feb 25 2026 Dmitry Belyavskiy <dbelyavs@redhat.com> - 9.9p1-4
- Provide a way to skip unsupported ML-KEM hybrid algorithms in FIPS mode
Resolves: RHEL-151580
* Tue Dec 09 2025 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-3
- Enable support for DSA keys
Resolves: RHEL-127624
- CVE-2025-61984: Reject usernames with control characters
Resolves: RHEL-133959
- CVE-2025-61985: Reject URL-strings with NULL characters
Resolves: RHEL-133960
* Mon Oct 27 2025 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-2
- Fix implicit destination path selection when source path ends with ".."
Resolves: RHEL-119515
- Canonicalize username when matching a user
Resolves: RHEL-118372
* Wed Sep 10 2025 Pavol Žáčik <pzacik@redhat.com> - 9.9p1-1
- Rebase to version 9.9
Resolves: RHEL-108912
* Mon Jul 21 2025 Zoltan Fridrich <zfridric@redhat.com> - 8.7p1-46
- Move the redhat help message to debug1 log level
Resolves: RHEL-104580
* Tue Feb 18 2025 Dmitry Belyavskiy <dbelyavs@redhat.com> - 8.7p1-45
- Fix missing error codes set and invalid error code checks in OpenSSH. It
prevents memory exhaustion attack and a MITM attack when VerifyHostKeyDNS
is on (CVE-2025-26465).
Resolves: RHEL-78700
* Mon Oct 21 2024 Dmitry Belyavskiy <dbelyavs@redhat.com> - 8.7p1-44
- Add extra help information on ssh early failure
Resolves: RHEL-33809
- Provide details on crypto error instead of "error in libcrypto"
Resolves: RHEL-52293
- Allow duplicate Subsystem directive
Resolves: RHEL-47112
/etc/ssh/ssh_config /etc/ssh/ssh_config.d /etc/ssh/ssh_config.d/50-redhat.conf /usr/bin/scp /usr/bin/sftp /usr/bin/ssh /usr/bin/ssh-add /usr/bin/ssh-agent /usr/bin/ssh-copy-id /usr/bin/ssh-keyscan /usr/lib/.build-id /usr/lib/.build-id/05 /usr/lib/.build-id/05/75788909e4f695678ebaf2b431cccda9a0a9fb /usr/lib/.build-id/41 /usr/lib/.build-id/41/0e9f2241ba6663ad0c7fe6e946d9c14c7b481a /usr/lib/.build-id/83 /usr/lib/.build-id/83/abce14bca00e9a1ab07e65dcd087d981e0a8b8 /usr/lib/.build-id/88 /usr/lib/.build-id/88/4e97134f88c37e2b755407f591539fee8f48b6 /usr/lib/.build-id/a5 /usr/lib/.build-id/a5/5f995ef31707ea641d415b9ed826295f6ac8e3 /usr/lib/.build-id/a8 /usr/lib/.build-id/a8/2045b4d57b94ffdcbb2be44981093ab7c66161 /usr/lib/.build-id/dd/f8b53d354a9c54032547f3f5a634851e4019ca /usr/lib/.build-id/f1 /usr/lib/.build-id/f1/bb202ff4cff8fdd70bebce43cb1e44b126ad42 /usr/lib/systemd/user/ssh-agent.service /usr/libexec/openssh/ssh-pkcs11-helper /usr/libexec/openssh/ssh-sk-helper /usr/share/man/man1/scp.1.gz /usr/share/man/man1/sftp.1.gz /usr/share/man/man1/ssh-add.1.gz /usr/share/man/man1/ssh-agent.1.gz /usr/share/man/man1/ssh-copy-id.1.gz /usr/share/man/man1/ssh-keyscan.1.gz /usr/share/man/man1/ssh.1.gz /usr/share/man/man5/ssh_config.5.gz /usr/share/man/man8/ssh-pkcs11-helper.8.gz /usr/share/man/man8/ssh-sk-helper.8.gz
Generated by rpm2html 1.8.1
Fabrice Bellet, Thu Oct 1 04:51:22 2026