OESA-2025-1665

Source
https://www.openeuler.org/en/security/security-bulletins/detail/?id=openEuler-SA-2025-1665
Import Source
https://repo.openeuler.org/security/data/osv/OESA-2025-1665.json
JSON Data
https://api.test.osv.dev/v1/vulns/OESA-2025-1665
Upstream
Published
2025-06-20T13:26:51Z
Modified
2025-08-12T05:50:36.340303Z
Summary
openssh security update
Details

OpenSSH is the premier connectivity tool for remote login with the SSH protocol. \ It encrypts all traffic to eliminate eavesdropping, connection hijacking, and \ other attacks. In addition, OpenSSH provides a large suite of secure tunneling \ capabilities, several authentication methods, and sophisticated configuration options.

Security Fix(es):

OpenSSH (OpenBSD Secure Shell) is a set of connection tools for secure access to remote computers in the Canadian OpenBSD program group. This tool is an open source implementation of the SSH protocol, supports encryption of all transmissions, and can effectively prevent eavesdropping, connection hijacking, and other network-level attacks. OpenSSH (OpenBSD Secure Shell) versions before 10.0 have a security vulnerability that originated from the DisableForwarding directive that does not correctly disable X11 and proxy forwarding.(CVE-2025-32728)

Database specific
{
    "severity": "Low"
}
References

Affected packages

openEuler:24.03-LTS-SP1 / openssh

Package

Name
openssh
Purl
pkg:rpm/openEuler/openssh&distro=openEuler-24.03-LTS-SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.6p1-6.oe2403sp1

Ecosystem specific

{
    "aarch64": [
        "openssh-9.6p1-6.oe2403sp1.aarch64.rpm",
        "openssh-askpass-9.6p1-6.oe2403sp1.aarch64.rpm",
        "openssh-clients-9.6p1-6.oe2403sp1.aarch64.rpm",
        "openssh-debuginfo-9.6p1-6.oe2403sp1.aarch64.rpm",
        "openssh-debugsource-9.6p1-6.oe2403sp1.aarch64.rpm",
        "openssh-keycat-9.6p1-6.oe2403sp1.aarch64.rpm",
        "openssh-server-9.6p1-6.oe2403sp1.aarch64.rpm",
        "pam_ssh_agent_auth-0.10.4-4.6.oe2403sp1.aarch64.rpm"
    ],
    "src": [
        "openssh-9.6p1-6.oe2403sp1.src.rpm"
    ],
    "noarch": [
        "openssh-help-9.6p1-6.oe2403sp1.noarch.rpm"
    ],
    "x86_64": [
        "openssh-9.6p1-6.oe2403sp1.x86_64.rpm",
        "openssh-askpass-9.6p1-6.oe2403sp1.x86_64.rpm",
        "openssh-clients-9.6p1-6.oe2403sp1.x86_64.rpm",
        "openssh-debuginfo-9.6p1-6.oe2403sp1.x86_64.rpm",
        "openssh-debugsource-9.6p1-6.oe2403sp1.x86_64.rpm",
        "openssh-keycat-9.6p1-6.oe2403sp1.x86_64.rpm",
        "openssh-server-9.6p1-6.oe2403sp1.x86_64.rpm",
        "pam_ssh_agent_auth-0.10.4-4.6.oe2403sp1.x86_64.rpm"
    ]
}