Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

openssh-clients-9.9p1-12.el9_8.alma.1 RPM for aarch64

From AlmaLinux 9.8 BaseOS for aarch64

Name: openssh-clients Distribution: AlmaLinux
Version: 9.9p1 Vendor: AlmaLinux
Release: 12.el9_8.alma.1 Build date: Fri Oct 2 12:02:31 2026
Group: Unspecified Build host: arm64-builder01.almalinux.org
Size: 2814642 Source RPM: openssh-9.9p1-12.el9_8.alma.1.src.rpm
Packager: AlmaLinux Packaging Team <packager@almalinux.org>
Url: http://www.openssh.com/portable.html
Summary: An open source SSH client applications
OpenSSH is a free version of SSH (Secure SHell), a program for logging
into and executing commands on a remote machine. This package includes
the clients necessary to make encrypted connections to SSH servers.

Provides

Requires

License

BSD

Changelog

* Fri Oct 02 2026 Koichiro Iwao <meta@almalinux.org> - 9.9p1-12.alma.1
  - Unpatch Red Hat help message
* Mon Sep 21 2026 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-12
  - CVE-2026-60001: Fix cases in GSSAPI and keyboard-interactive
    authentication where the minimum per-attempt delay was not being enforced
    Resolves: RHEL-258461
* Fri Aug 21 2026 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-11
  - CVE-2026-73283: Complete the fix of security bypass due to incorrect
    handling of forwarding and tunneling options
    Resolves: RHEL-245416
  - CVE-2026-73281: Fix misinteraction between agent locking and
    the session-bind@openssh.com extension
    Resolves: RHEL-245424
  - CVE-2026-73282: Fix information disclosure and data corruption
    via use-after-free in ssh client
    Resolves: RHEL-245419
* Wed Aug 12 2026 Dmitry Belyavskiy <dbelyavs@redhat.com> - 9.9p1-10
  - Fix CVE-2026-59995 OpenSSH: sftp client allows attacker to control downloaded
    file location
    Resolves: RHEL-236320
  - Fix CVE-2026-59999 and CVE-2026-73283: Security bypass due to incorrect
    handling of forwarding and tunneling options
    Resolves: RHEL-236286
* Tue Jul 14 2026 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-9
  - CVE-2026-59996: Fix remote glob result of ".." causing files to be placed
    in unintended parent directories when scp performs remote-to-remote copy
    via the local host
    Resolves: RHEL-193178
  - CVE-2026-60002: Fix use-after-free in cached hostkey during key re-exchange
    Resolves: RHEL-193024
* Tue Jun 30 2026 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-8
  - CVE-2026-55653: Fix double free in openssh DH-GEX client path during
    FIPS known-group validation that leads to client-side denial of service
    Resolves: RHEL-186439
  - CVE-2026-55654: Fix heap out-of-bounds read during GSSAPI indicator
    cleanup due to missing NULL terminator
    Resolves: RHEL-185836
  - CVE-2026-55655: Fix MITM of X11 forwarding via abstract UNIX socket
    pre-binding
    Resolves: RHEL-185854
* Mon Apr 13 2026 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-7
  - CVE-2026-35385: Fix privilege escalation via scp legacy protocol
    when not in preserving file mode
    Resolves: RHEL-164753
  - CVE-2026-35388: Add connection multiplexing confirmation for proxy-mode
    multiplexing sessions
    Resolves: RHEL-166250
  - CVE-2026-35387: Fix incomplete application of PubkeyAcceptedAlgorithms
    and HostbasedAcceptedAlgorithms with regard to ECDSA keys
    Resolves: RHEL-166234
  - CVE-2026-35414: Fix mishandling of authorized_keys principals option
    Resolves: RHEL-166202
  - CVE-2026-35386: Add validation rules to usernames and hostnames
    set for ProxyJump/-J on the commandline
    Resolves: RHEL-166218
* Thu Mar 26 2026 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-6
  - Version bump
* Mon Mar 16 2026 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-5
  - CVE-2026-3497: Fix information disclosure or denial of service due
    to uninitialized variables in gssapi-keyex
    Resolves: RHEL-155824
* Wed Feb 25 2026 Dmitry Belyavskiy <dbelyavs@redhat.com> - 9.9p1-4
  - Provide a way to skip unsupported ML-KEM hybrid algorithms in FIPS mode
    Resolves: RHEL-151580
* Tue Dec 09 2025 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-3
  - Enable support for DSA keys
    Resolves: RHEL-127624
  - CVE-2025-61984: Reject usernames with control characters
    Resolves: RHEL-133959
  - CVE-2025-61985: Reject URL-strings with NULL characters
    Resolves: RHEL-133960
* Mon Oct 27 2025 Zoltan Fridrich <zfridric@redhat.com> - 9.9p1-2
  - Fix implicit destination path selection when source path ends with ".."
    Resolves: RHEL-119515
  - Canonicalize username when matching a user
    Resolves: RHEL-118372
* Wed Sep 10 2025 Pavol Žáčik <pzacik@redhat.com> - 9.9p1-1
  - Rebase to version 9.9
    Resolves: RHEL-108912
* Mon Jul 21 2025 Zoltan Fridrich <zfridric@redhat.com> - 8.7p1-46
  - Move the redhat help message to debug1 log level
    Resolves: RHEL-104580
* Tue Feb 18 2025 Dmitry Belyavskiy <dbelyavs@redhat.com> - 8.7p1-45
  - Fix missing error codes set and invalid error code checks in OpenSSH. It
    prevents memory exhaustion attack and a MITM attack when VerifyHostKeyDNS
    is on (CVE-2025-26465).
    Resolves: RHEL-78700
* Mon Oct 21 2024 Dmitry Belyavskiy <dbelyavs@redhat.com> - 8.7p1-44
  - Add extra help information on ssh early failure
    Resolves: RHEL-33809
  - Provide details on crypto error instead of "error in libcrypto"
    Resolves: RHEL-52293
  - Allow duplicate Subsystem directive
    Resolves: RHEL-47112

Files

/etc/ssh/ssh_config
/etc/ssh/ssh_config.d
/etc/ssh/ssh_config.d/50-redhat.conf
/usr/bin/scp
/usr/bin/sftp
/usr/bin/ssh
/usr/bin/ssh-add
/usr/bin/ssh-agent
/usr/bin/ssh-copy-id
/usr/bin/ssh-keyscan
/usr/lib/.build-id
/usr/lib/.build-id/1a
/usr/lib/.build-id/1a/c5d5bf95adc2e9efad2f9c9f9d49c21fa7f6b7
/usr/lib/.build-id/21
/usr/lib/.build-id/21/19b7b8207b6d82ab5b0bcdee78cb9dcc1a2e3c
/usr/lib/.build-id/44
/usr/lib/.build-id/44/aeafdfe528a26b59b5527d72b89b6c10592392
/usr/lib/.build-id/70
/usr/lib/.build-id/70/9e2ee4d52777f078669c9316686cf3b8b8897a
/usr/lib/.build-id/7c
/usr/lib/.build-id/7c/a937931a918f5e4df5807593e82fdf19bd4fa8
/usr/lib/.build-id/a4
/usr/lib/.build-id/a4/74b311a3af2cfecff8c017491755309f5b0509
/usr/lib/.build-id/ab
/usr/lib/.build-id/ab/aa80d9bcbf0a30b83851490b3afaecf8804f4f
/usr/lib/.build-id/ef
/usr/lib/.build-id/ef/dc6b4f3973c7456eaa89b4738090c42c93d80a
/usr/lib/systemd/user/ssh-agent.service
/usr/libexec/openssh/ssh-pkcs11-helper
/usr/libexec/openssh/ssh-sk-helper
/usr/share/man/man1/scp.1.gz
/usr/share/man/man1/sftp.1.gz
/usr/share/man/man1/ssh-add.1.gz
/usr/share/man/man1/ssh-agent.1.gz
/usr/share/man/man1/ssh-copy-id.1.gz
/usr/share/man/man1/ssh-keyscan.1.gz
/usr/share/man/man1/ssh.1.gz
/usr/share/man/man5/ssh_config.5.gz
/usr/share/man/man8/ssh-pkcs11-helper.8.gz
/usr/share/man/man8/ssh-sk-helper.8.gz


Generated by rpm2html 1.8.1

Fabrice Bellet, Sun Oct 11 07:58:11 2026