Story perspectives
Critical OpenSSH Vulnerabilities Prompt Urgent User Upgrades
2/18/2025
50 12
1 of 1
Story summary
- Qualys has uncovered two critical vulnerabilities in OpenSSH: CVE-2025-26465, which opens the door to machine-in-the-middle attacks, and CVE-2025-26466, which can trigger pre-authentication denial-of-service attacks. Affecting versions 6.8p1 to 9.9p1, OpenSSH has swiftly released version 9.9p2, urging users to upgrade immediately to safeguard their systems.
